← back
CVE-2015-2528

CVE-2015-2528

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 3.6%
from disclosure to weapon6 days
Published on NVDSep 9
1st PoC+6d
exploitation probability
3.6%top 12% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 do not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka "Windows Task Management Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-2524.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.