CVE-2015-1701: Microsoft Win32k Privilege Escalation Vulnerability. An
Microsoft Win32k Privilege Escalation Vulnerability. An unspecified vulnerability exists in the Win32k.sys kernel-mode driver in Microsoft Windows Server that allows a local attacker to execute arbitrary code with elevated privileges.
- CISA KEV-listed (remediation due 2022-03-24)
- used in ransomware campaigns
- EPSS 90.4% (99.6% percentile)