Back

HIGH KEV Used in ransomware campaigns

Win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows local users to gain privileges via a crafted application, as exploited in the wild in April 2015, aka "Win32k Elevation of Privilege Vulnerability."

Published Apr 21, 2015 ·Due Mar 24, 2022

Description

Win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows local users to gain privileges via a crafted application, as exploited in the wild in April 2015, aka "Win32k Elevation of Privilege Vulnerability."

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (0)

No CWE recorded.

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner microsoft
Published Apr 21, 2015
Updated Aug 14, 2026
Reserved Feb 17, 2015
CISA Vulnrichment
Updated Feb 10, 2025
NVD
Status Analyzed
Modified Aug 14, 2026
Red Hat
Severity n/a
Public date n/a