Privilege escalation in Microsoft Windows and Windows Server - CVE-2015-1701
Published: January 31, 2017 / Updated: November 20, 2020
Vulnerability details
The weakness exists due to improper access control. A local attacker can create a specially crafted application, execute a callback in userspace and use data from the System token to execute arbitrary code on the system with root privileges.
Successful exploitation of the vulnerability may result in arbitrary code execution on the vulnerable system.
Note: the vulnerability was being actively exploited.Affected software
Windows Server
How to mitigate CVE-2015-1701
Links to Public Exploits and PoC-codes
- Exploit #2794 - WindowsExploitationResources (Resources pertaining to advanced Windows exploit development and semi-related topics) (June 2, 2020)
- Exploit #1878 - CVE-2015-0057 ( 翻译文章,CVE-2015-0057漏洞在32位和64位系统上的利用。Exploiting the win32k!xxxEnableWndSBArrows use-after-free (CVE 2015-0057) bug on both 32-bit and 64-bit(Aaron Adams of NCC )) (March 18, 2020)
- Exploit #967 - Microsoft Windows - ClientCopyImage Win32k Exploit (MS15-051) (Metasploit) (March 18, 2020)
- Exploit #968 - Microsoft Windows - Privilege Escalation (MS15-051) (March 18, 2020)
- Exploit #1610 - Windows ClientCopyImage Win32k Exploit (March 18, 2020)