Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v10.5 - Exploits Update (Mon Dec 06 2010)

Microsoft Windows SystemDefaultEUDCFont Privilege Escalation Exploit Update

Exploits/Local  [Windows]




• Mon Dec 06 2010
This module exploits a privilege escalation vulnerability in Microsoft Windows by setting a specially crafted SystemDefaultEUDCFont value in the HKEY_CURRENT_USER\EUDC Registry key, and then calling EnableEUDC() function in GDI32 library. It will enable local unprivileged users to gain SYSTEM privileges. This update adds support for Windows Vista and Windows Server 2008.

Exploits Vulnerabiltiy: NOCVE-9999-46103



< Back to Product Updates