Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

CVE-2005-2827

EPSS 2.04% · P84

Public Exploits 1

ExploitDB · 1 EDB-1407 [local]
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-2827

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The thread termination routine in the kernel for Windows NT 4.0 and 2000 (NTOSKRNL.EXE) allows local users to modify kernel memory and execution flow via steps in which a terminating thread causes Asynchronous Procedure Call (APC) entries to free the wrong data, aka the "Windows Kernel Vulnerability."
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Microsoft Windows异步过程调用本地权限提升漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Microsoft Windows是美国微软(Microsoft)公司发布的一系列操作系统。 Microsoft Windows处理异步过程调用(APC)队列列表的方式存在漏洞,本地攻击者可以利用此漏洞提供任意函数指针,劫持执行流,最终完全控制系统。线程在退出的时候,PspExitThread会从ETHREAD.ApcState.ApcListHead[0]和ApcListHead[1]分离线程的APC队列,这样每个队列都会是一个循环的、双向链接的列表,其第一个和最后一个节点不指回到表头(LIST_ENT
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-2827

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-2827

登录查看更多情报信息。

Vendor Advisories for CVE-2005-2827 (12)

Other References for CVE-2005-2827 (4)

Same Patch Batch · n/a · 2005-12-14 · 49 CVEs total

CVE-2005-4241VCD-DB跨站脚本攻击漏洞
CVE-2005-4246Plogger Index.PHP SQL注入漏洞
CVE-2005-4250mcGallery PRO目录遍历漏洞
CVE-2005-4242Horde Turba H3 跨站脚本攻击漏洞
CVE-2005-1930Trend Micro ServerProtect RPTServer.ASP 目录遍历漏洞
CVE-2005-3360Trend Micro 多个产品本地不安全许可漏洞
CVE-2005-1929Trend Micro ServerProtect ISANVWRequest 堆溢出漏洞
CVE-2005-1928Trend Micro ServerProtect EarthAgent Daemon拒绝服务漏洞
CVE-2005-3358Linux Kernel set_mempolicy本地拒绝服务漏洞
CVE-2005-4244Snipe Gallery多个输入验证漏洞
CVE-2005-4245Snipe Gallery跨站脚本攻击漏洞
CVE-2005-4240VCD-DB SQL注入漏洞
CVE-2005-4239PHP JackKnife跨站脚本攻击漏洞
CVE-2005-4238Mantis View_filters_page.PHP 跨站脚本攻击漏洞
CVE-2005-4237MySQL Auction 跨站脚本攻击漏洞
CVE-2005-4236CKGold Search.PHP 跨站脚本攻击漏洞
CVE-2005-4235WHMCompleteSolution Knowledgebase.PHP跨站脚本攻击漏洞
CVE-2005-4234EncapsGallery Gallery.PHP SQL注入漏洞
CVE-2005-4233PHP Web Scripts Ad Manager Pro Advertiser_statistic.PHP SQL注入漏洞
CVE-2005-4232Jamit Job Board Index.PHP SQL 注入漏洞

Showing top 20 of 49 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-2827

No comments yet


Leave a comment