7.8 HIGH
- CVSS version (CVSS): 3.1
- Attack Vector (AV): Local (L)
- Attack Complexity (AC): Low (L)
- Privileges Required (PR): Low (L)
- User Interaction (UI): None (N)
- Scope (S): Unchanged (U)
- Confidentiality (C): High (H)
- Integrity (I): High (H)
- Availability (A): High (H)
- Exploit Code Maturity (E): Unproven (U)
- Remediation Level (RL): Official Fix (O)
- Report Confidence (RC): Confirmed (C)
- Modified Attack Vector (MAV): Local (L)
- Modified Attack Complexity (MAC): Low (L)
- Modified Privileges Required (MPR): Low (L)
- Modified User Interaction (MUI): None (N)
- Modified Confidentiality (MC): High (H)
- Modified Scope (MS): Unchanged (U)
- Modified Integrity (MI): High (H)
- Modified Availability (MA): High (H)
Activity log
- Created & dismissed (no matching packages found) suggestion
Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability
Deserialization of untrusted data in Windows Wireless Wide Area Network Service allows an authorized attacker to elevate privileges locally.
References
-
Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability patchvendor-advisory
Affected products
- <10.0.14393.9339
- <10.0.17763.9020
- <10.0.26100.33158
- <10.0.14393.9339
- <10.0.17763.9020
- <10.0.19044.7548
- <10.0.19045.7548
- <10.0.26100.8875
- <10.0.26200.8875
- <10.0.28000.2525
- <10.0.14393.9339
- <10.0.17763.9020
- <10.0.26100.33158