Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2011-2005

KEV EPSS 67.09% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2011-2005

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
afd.sys in the Ancillary Function Driver in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly validate user-mode input passed to kernel mode, which allows local users to gain privileges via a crafted application, aka "Ancillary Function Driver Elevation of Privilege Vulnerability."
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Microsoft Ancillary Function Driver ‘afd.sys’本地权限提升漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Microsoft Windows XP是美国微软(Microsoft)公司开发和维护的一套供个人电脑使用的操作系统。 Microsoft Windows XP SP2和SP3版本以及Server 2003 SP2版本中存在安全漏洞。由于Ancillary Function Driver的afd.sys不能正确验证传递给内核模式用户的输入,本地用户可借助特制应用程序获取特权。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2011-2005

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2011-2005

登录查看更多情报信息。

Same Patch Batch · n/a · 2011-10-12 · 50 CVEs total

CVE-2011-1995Microsoft IE OLEAuto32.dll内存破坏漏洞
CVE-2011-2001Microsoft IE虚拟函数表格内存破坏漏洞
CVE-2011-2008Microsoft Host Integration Server 输入验证错误漏洞
CVE-2011-2009Microsoft Windows Media Center 不安全库加载漏洞
CVE-2011-2011Microsoft Windows Kernel Win32k.sys本地权限提升漏洞
CVE-2011-2012Microsoft Forefront Unified Access Gateway 输入验证错误漏洞
CVE-2011-3155HP Onboard Administrator远程非法访问漏洞
CVE-2011-2007Microsoft Host Integration Server 输入验证错误漏洞
CVE-2011-1997Microsoft Internet Explorer 输入验证错误漏洞
CVE-2011-1996Microsoft IE Option元素内存破坏漏洞
CVE-2011-1998Microsoft IE Jscript9.dll内存破坏漏洞
CVE-2011-1993Microsoft IE Scroll事件远程代码执行漏洞
CVE-2011-1985Microsoft Windows Kernel Win32k.sys本地权限提升漏洞
CVE-2011-1969Microsoft Forefront Unified Access Gateway 代码注入漏洞
CVE-2011-1897Microsoft Forefront Unified Access Gateway 跨站脚本漏洞
CVE-2011-1896Microsoft Forefront Unified Access Gateway 跨站脚本漏洞
CVE-2011-1895Microsoft Forefront Unified Access Gateway 响应拆分XSS漏洞
CVE-2011-1253Microsoft .NET Framework 权限许可和访问控制问题漏洞
CVE-2011-1247Microsoft 'Microsoft Active Accessibility'组件不可信搜索路径漏洞
CVE-2011-3252Apple iTunes CoreAudio 缓冲区溢出漏洞

Showing top 20 of 50 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2011-2005

No comments yet


Leave a comment