peter bassill · operator
$ cve CVE-2010-2744 JSON

CVE-2010-2744 EXPLOIT

7.2
HIGH · CVSS 2.0 · EPSS 4.2% (pctl 91)

Patch early

A public exploit exists.

Description

The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 do not properly manage a window class, which allows local users to gain privileges by creating a window, then using (1) the SetWindowLongPtr function to modify the popup menu structure, or (2) the SwitchWndProc function with a switch window information pointer, which is not re-initialized when a WM_NCCREATE message is processed, aka "Win32k Window Class Vulnerability."

Scoring

CVSS7.2 (HIGH, v2.0)
VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS4.19% — more likely to be exploited than 91% of all CVEs
WeaknessCWE-264
On CISA KEVno
Public exploityes
Published2010-10-13
Last modified2026-06-16

Affected (6)

VendorProduct
microsoftwindows 2003 server
microsoftwindows 7
microsoftwindows server 2003
microsoftwindows server 2008
microsoftwindows vista
microsoftwindows xp

Public exploits

SourceTitleDate
exploit-dbMicrosoft Windows - Class Handling (MS10-073)2011-01-02

References

→ the Explorer  ·  watch your stack  ·  NVD