CVE-2011-1974 EXPLOIT
7.2
HIGH · CVSS 2.0 · EPSS 7% (pctl 94)
Patch early
A public exploit exists.
Description
NDISTAPI.sys in the NDISTAPI driver in Remote Access Service (RAS) in Microsoft Windows XP SP2 and SP3 and Windows Server 2003 SP2 does not properly validate user-mode input, which allows local users to gain privileges via a crafted application, aka "NDISTAPI Elevation of Privilege Vulnerability."
Scoring
| CVSS | 7.2 (HIGH, v2.0) |
|---|---|
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 6.98% — more likely to be exploited than 94% of all CVEs |
| Weakness | CWE-264 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2011-08-10 |
| Last modified | 2026-06-16 |
Affected (3)
| Vendor | Product |
|---|---|
| microsoft | windows 2003 server |
| microsoft | windows server 2003 |
| microsoft | windows xp |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsoft Windows (x86) - 'NDISTAPI' Local Privilege Escalation (MS11-062) | 2016-10-24 |
References
- http://www.securityfocus.com/bid/48996
- http://www.us-cert.gov/cas/techalerts/TA11-221A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-062
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12912
- https://www.exploit-db.com/exploits/40627/
- http://www.securityfocus.com/bid/48996
- http://www.us-cert.gov/cas/techalerts/TA11-221A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-062
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12912
- https://www.exploit-db.com/exploits/40627/
→ the Explorer · watch your stack · NVD