Unknown
CVE-2011-1229
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)Unknown
Unknown
Unknown
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that triggers a NULL pointer dereference, a different vulnerability than other “Vulnerability Type 2” CVEs listed in MS11-034, aka “Win32k Null Pointer De-reference Vulnerability.”
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Products
- agent access,
- aura conferencing standard edition 6.0.0,
- basic call management system reporting desktop,
- call management server supervisor,
- callpilot,
- callvisor asai lan,
- communication server 1000 telephony manager,
- computer telephony,
- contact center express,
- customer interaction express,
- enterprise manager,
- integrated management,
- interaction center,
- ip agent,
- ip softphone,
- meeting exchange,
- messaging application server,
- network reporting,
- octelaccess server,
- octeldesigner,
- operational analyst,
- outbound contact management,
- speech access,
- unified communication center,
- unified messenger,
- visual messenger,
- visual vector client,
- vpnmanager console,
- web messenger,
- windows 2003 server -,
- windows 7 -,
- windows server 2003 -,
- windows server 2008 -,
- windows server 2008 r2,
- windows vista -,
- windows xp -
References
Advisory
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: