CVE-2013-5065
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Nov 28, 2013
Updated: Dec 20, 2024
Summary
CVE-2013-5065 is a vulnerability affecting the NDProxy.sys driver in Microsoft Windows XP SP2, SP3, and Server 2003 SP2. A local user can exploit this issue by using a specially crafted application to gain elevated privileges. This vulnerability, which was exploited in the wild in November 2013, allows an attacker to bypass security restrictions and gain unauthorized access to sensitive information or make system-level changes. Microsoft released a patch to address this vulnerability soon after it was disclosed.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows XP
- Microsoft Windows Server 2003
Affected Vendors
- Microsoft