CVE-2010-3338
65Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 22%
from disclosure to weapon0 days
Published on NVDDec 16
1st PoCNov 20
metasploitSep 13
VulnCheck+4017d
exploitation probability
22%top 3% of all CVEs
observed exploitation
yesVulnCheck
3 public exploit(s)
The Windows Task Scheduler in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly determine the security context of scheduled tasks, which allows local users to gain privileges via a crafted application, aka "Task Scheduler Vulnerability." NOTE: this might overlap CVE-2010-3888.
Affected products
n/a · n/apublic PoCs found — 3✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/19930exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/15589vulncheckvulncheck.com/xdb/afe4f82f4259unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.