8.0 HIGH
- CVSS version (CVSS): 3.1
- Attack Vector (AV): Network (N)
- Attack Complexity (AC): Low (L)
- Privileges Required (PR): Low (L)
- User Interaction (UI): Required (R)
- Scope (S): Unchanged (U)
- Confidentiality (C): High (H)
- Integrity (I): High (H)
- Availability (A): High (H)
- Exploit Code Maturity (E): Unproven (U)
- Remediation Level (RL): Official Fix (O)
- Report Confidence (RC): Confirmed (C)
- Modified Attack Vector (MAV): Network (N)
- Modified Attack Complexity (MAC): Low (L)
- Modified Privileges Required (MPR): Low (L)
- Modified User Interaction (MUI): Required (R)
- Modified Confidentiality (MC): High (H)
- Modified Scope (MS): Unchanged (U)
- Modified Integrity (MI): High (H)
- Modified Availability (MA): High (H)
Activity log
- Created & dismissed (no matching packages found) suggestion
Microsoft VOLSNAP.SYS Elevation of Privilege Vulnerability
Out-of-bounds read in Windows VOLSNAP.SYS allows an authorized attacker to elevate privileges over a network.
References
Affected products
- <6.2.9200.26349
- <10.0.14393.9512
- <10.0.17763.9245
- <10.0.20348.5622
- <10.0.26100.33438
- <6.3.9600.23397
- <10.0.14393.9512
- <10.0.17763.9245
- <10.0.19044.7725
- <10.0.19045.7725
- <10.0.22631.7582
- <10.0.26100.9445
- <10.0.26200.9445
- <10.0.22631.7582
- <10.0.28000.2954
- <6.2.9200.26349
- <10.0.14393.9512
- <10.0.17763.9245
- <10.0.26100.33438
- <6.3.9600.23397