{"id":"CVE-2010-4398","vendor_project":"Microsoft","product":"Windows","vulnerability_name":"Microsoft Windows Kernel Stack-Based Buffer Overflow Vulnerability","date_added":"2022-03-28","due_date":"2022-04-21","known_ransomware_use":"Unknown","short_description":"Stack-based buffer overflow in the RtlQueryRegistryValues function in win32k.sys in Microsoft Windows allows local users to gain privileges, and bypass the User Account Control (UAC) feature.","required_action":"Apply updates per vendor instructions.","cwes":"CWE-119","cvss_version":"3.1","cvss_severity":"HIGH","cvss_vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","nvd_published":"2010-12-06","nvd_status":"Analyzed","epss":0.08661,"epss_percentile":0.94881,"cvss_score":7.8,"days_published_to_kev":4130,"source":"https://data.cybermax-tools.workers.dev/cve/CVE-2010-4398","by":"CyberMax"}