Back to search
CVE-2015-0062
Published: Feb 11, 2015
Modified: Aug 6, 2024
PUBLISHED
Description
Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to gain privileges via a crafted application that leverages incorrect impersonation handling in a process that uses the SeAssignPrimaryTokenPrivilege privilege, aka "Windows Create Process Elevation of Privilege Vulnerability."
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
MS15-015
vendor-advisory
x_refsource_MS
62840
third-party-advisory
x_refsource_SECUNIA
ms-windows-cve20150062-priv-esc(100437)
vdb-entry
x_refsource_XF
win-ms15kb3031432-update(100438)
vdb-entry
x_refsource_XF
72458
vdb-entry
x_refsource_BID
1031724
vdb-entry
x_refsource_SECTRACK
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now