CVE-2014-4076

Description

Microsoft Windows Server 2003 SP2 allows local users to gain privileges via a crafted IOCTL call to (1) tcpip.sys or (2) tcpip6.sys, aka TCP/IP Elevation of Privilege Vulnerability.

Risk Information

Base Score
7.8
MODERATE
Vector
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
61.102

Associated Vulnerability

VulnerabilityOS Platform
Security Update for Windows Server 2003 (KB2989935)Windows
Security Update for Windows Server 2003 x64 Edition (KB2989935)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-16439Security Update for Windows Server 2003 (KB2989935)
PATCH-16440Security Update for Windows Server 2003 x64 Edition (KB2989935)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234