CVE-2010-3338
65Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 20%
from disclosure to weapon0 days
Published on NVDDec 16
1st PoCNov 20
metasploitSep 13
VulnCheck+4017d
exploitation probability
20%top 3% of all CVEs
observed exploitation
yesVulnCheck
3 public exploit(s)
The Windows Task Scheduler in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly determine the security context of scheduled tasks, which allows local users to gain privileges via a crafted application, aka "Task Scheduler Vulnerability." NOTE: this might overlap CVE-2010-3888.
Affected products
n/a · n/apublic PoCs found — 3
exploitdbwww.exploit-db.com/exploits/19930unverifiedexploitdbwww.exploit-db.com/exploits/15589unverifiedvulncheckvulncheck.com/xdb/afe4f82f4259unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.