Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
90Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actcvss 7.8epss 65%
from disclosure to weapon56 days
Published on NVDJan 10
1st PoC+56d
metasploitJan 10
VulnCheck+63d
exploitation probability
65%top 1% of all CVEs
observed exploitation
yesVulnCheck
13 public exploit(s)
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Affected products
Microsoft · Windows 11 version 21H2Microsoft · Windows 11 version 22H2Microsoft · Windows Server 2022public PoCs found — 13
vulncheckvulncheck.com/xdb/79ff7afc96e4unverifiedvulncheckvulncheck.com/xdb/a2215d69e357unverifiedvulncheckvulncheck.com/xdb/784b586cbad4unverifiedvulncheckvulncheck.com/xdb/1c3e7f162c3aunverifiedvulncheckvulncheck.com/xdb/165a90954330unverifiedvulncheckvulncheck.com/xdb/242fe4c47b64unverifiedvulncheckvulncheck.com/xdb/691609805fb7unverifiedvulncheckvulncheck.com/xdb/8c8d45e50b41unverifiedvulncheckvulncheck.com/xdb/fd03247f1aa9unverifiedvulncheckvulncheck.com/xdb/158671e96269unverifiedvulncheckvulncheck.com/xdb/91ed19bd2175unverifiedvulncheckvulncheck.com/xdb/1137d4e2a0faunverifiedvulncheckvulncheck.com/xdb/5c30fef48805unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.