CVE Database
/

CVE-2018-8120

Back to search

CVE-2018-8120

Published: May 9, 2018

Modified: Oct 21, 2025

PUBLISHED

Description

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2. This CVE ID is unique from CVE-2018-8124, CVE-2018-8164, CVE-2018-8166.

VendorProductVersions

Microsoft

Windows Server 2008

affected
32-bit Systems Service Pack 2
affected
32-bit Systems Service Pack 2 (Server Core installation)
affected
Itanium-Based Systems Service Pack 2
affected
x64-based Systems Service Pack 2
affected
x64-based Systems Service Pack 2 (Server Core installation)

Microsoft

Windows 7

affected
32-bit Systems Service Pack 1
affected
x64-based Systems Service Pack 1

Microsoft

Windows Server 2008 R2

affected
Itanium-Based Systems Service Pack 1
affected
x64-based Systems Service Pack 1
affected
x64-based Systems Service Pack 1 (Server Core installation)

References

45653
exploit
x_refsource_EXPLOIT-DB
1040849
vdb-entry
x_refsource_SECTRACK
104034
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now