216.73.217.113

CVE-2016-0099

· Published 09/03/2016 12:59 · Modified 22/04/2026 23:57 · Author: Cybersecurity and Infrastructure Security Agency

Labels: CVE-2016-0099

Essential information

Published
09/03/2016 12:59
Modified
22/04/2026 23:57
Author
Cybersecurity and Infrastructure Security Agency
Creator
Cybersecurity and Infrastructure Security Agency
CVSS
7.2 (v2) 7.8 HIGH (v3.1)
CISA KEV
Yes
CWE
CWE-120
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

A privilege escalation vulnerability exists in Microsoft Windows if the Windows Secondary Logon Service fails to properly manage request handles in memory. An attacker who successfully exploited this vulnerability could run arbitrary code as an administrator.

NVD status

NVD
View on NVD