CISA Known Exploited Vulnerability

CVE-2018-8120 Ransomware

Microsoft · Win32k

Microsoft Win32k Privilege Escalation Vulnerability

Date added
BOD 22-01 due date
CWE CWE-404
Ransomware Known

CISA description

A privilege escalation vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory.

Required action

Apply updates per vendor instructions.