Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.809344
Category:Windows : Microsoft Bulletins
Title:Microsoft Windows Diagnostics Hub Privilege Elevation Vulnerability (3193229)
Summary:This host is missing an important security; update according to Microsoft Bulletin MS16-125.
Description:Summary:
This host is missing an important security
update according to Microsoft Bulletin MS16-125.

Vulnerability Insight:
An elevation of privilege vulnerability exists
in the Windows Diagnostics Hub Standard Collector Service when the Windows
Diagnostics Hub Standard Collector Service fails to properly sanitize input.

Vulnerability Impact:
Successful exploitation will allow an attacker
to run arbitrary code with elevated system privileges. An attacker could then
install programs, view, change, or delete data, or create new accounts with
full user rights.

Affected Software/OS:
- Microsoft Windows 10 x32/x64

- Microsoft Windows 10 Version 1511 x32/x64

- Microsoft Windows 10 Version 1607 x32/x64

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
7.2

CVSS Vector:
AV:L/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2016-7188
BugTraq ID: 93359
http://www.securityfocus.com/bid/93359
https://www.exploit-db.com/exploits/40562/
Microsoft Security Bulletin: MS16-125
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-125
http://www.securitytracker.com/id/1036997
CopyrightCopyright (C) 2016 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.