← back
CVE-2010-2743observed exploitation

CVE-2010-2743

65Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 15%
from disclosure to weapon0 days
Published on NVDJan 20
1st PoCJan 13
metasploitOct 12
VulnCheck+3982d
exploitation probability
15%top 4% of all CVEs
observed exploitation
yesVulnCheck
1 public exploit(s)
The kernel-mode drivers in Microsoft Windows XP SP3 do not properly perform indexing of a function-pointer table during the loading of keyboard layouts from disk, which allows local users to gain privileges via a crafted application, as demonstrated in the wild in July 2010 by the Stuxnet worm, aka "Win32k Keyboard Layout Vulnerability." NOTE: this might be a duplicate of CVE-2010-3888 or CVE-2010-3889.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.