peter bassill · operator
$ cve CVE-2010-1888 JSON

CVE-2010-1888 EXPLOIT

6.8
MEDIUM · CVSS 2.0 · EPSS 2.5% (pctl 84)

Patch early

A public exploit exists.

Description

Race condition in the kernel in Microsoft Windows XP SP3 allows local users to gain privileges via vectors involving thread creation, aka "Windows Kernel Data Initialization Vulnerability."

Scoring

CVSS6.8 (MEDIUM, v2.0)
VectorAV:L/AC:L/Au:S/C:C/I:C/A:C
EPSS2.5% — more likely to be exploited than 84% of all CVEs
WeaknessCWE-362
On CISA KEVno
Public exploityes
Published2010-08-11
Last modified2026-06-16

Affected (1)

VendorProduct
microsoftwindows xp

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD