TROYANOSYVIRUS
Retour aux CVEs

CVE-2015-1769

MEDIUMCISA KEV
6.6

Description

Mount Manager in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 mishandles symlinks, which allows physically proximate attackers to execute arbitrary code by connecting a crafted USB device, aka "Mount Manager Elevation of Privilege Vulnerability."

Details CVE

Score CVSS v3.16.6
SeveriteMEDIUM
Vecteur CVSSCVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vecteur d'attaquePHYSICAL
ComplexiteLOW
Privileges requisLOW
Interaction utilisateurNONE
Publie8/15/2015
Derniere modification4/22/2026
Sourcekev
Observations honeypot0

CISA KEV

FournisseurMicrosoft
ProduitWindows
Nom vulnerabiliteMicrosoft Windows Mount Manager Privilege Escalation Vulnerability
Date ajout KEV2022-05-25
Date limite remediation2022-06-15
Utilise dans ransomwareUnknown

Produits affectes

microsoft:windows_10microsoft:windows_7microsoft:windows_8microsoft:windows_8.1microsoft:windows_rtmicrosoft:windows_rt_8.1microsoft:windows_server_2008microsoft:windows_server_2012microsoft:windows_vista

Faiblesses (CWE)

CWE-264

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.