CVE-2013-5065

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Nov 28, 2013
Updated: Dec 20, 2024

Summary

CVE-2013-5065 is a vulnerability affecting the NDProxy.sys driver in Microsoft Windows XP SP2, SP3, and Server 2003 SP2. A local user can exploit this issue by using a specially crafted application to gain elevated privileges. This vulnerability, which was exploited in the wild in November 2013, allows an attacker to bypass security restrictions and gain unauthorized access to sensitive information or make system-level changes. Microsoft released a patch to address this vulnerability soon after it was disclosed.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows XP
  • Microsoft Windows Server 2003

Affected Vendors

  • Microsoft