### [CVE-2018-8440](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-8440) ![](https://img.shields.io/static/v1?label=Product&message=Windows%2010%20Servers&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Windows%2010&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Windows%207&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Windows%208.1&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Windows%20RT%208.1&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Windows%20Server%202008%20R2&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Windows%20Server%202008&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Windows%20Server%202012%20R2&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Windows%20Server%202012&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Windows%20Server%202016&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Elevation%20of%20Privilege&color=brighgreen) ### Description An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC), aka "Windows ALPC Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers. ### POC #### Reference - https://blog.0patch.com/2018/08/how-we-micropatched-publicly-dropped.html - https://blog.0patch.com/2018/08/how-we-micropatched-publicly-dropped.html - https://blog.0patch.com/2018/09/comparing-our-micropatch-with.html - https://blog.0patch.com/2018/09/comparing-our-micropatch-with.html #### Github - https://github.com/0xT11/CVE-POC - https://github.com/ARPSyndicate/cvemon - https://github.com/ASR511-OO7/windows-kernel-exploits - https://github.com/Ascotbe/Kernelhub - https://github.com/Cruxer8Mech/Idk - https://github.com/Jkrasher/WindowsThreatResearch_JKrasher - https://github.com/Micr067/windows-kernel-exploits - https://github.com/OneLogicalMyth/zeroday-powershell - https://github.com/Ostorlab/KEV - https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors - https://github.com/QChiLan/win-exploit - https://github.com/SecWiki/windows-kernel-exploits - https://github.com/Yuki0x80/BlackHat2019 - https://github.com/albinjoshy03/windows-kernel-exploits - https://github.com/alian87/windows-kernel-exploits - https://github.com/asr511/windows-kernel-exploits - https://github.com/demilson/Windows - https://github.com/distance-vector/window-kernel-exp - https://github.com/hectorgie/PoC-in-GitHub - https://github.com/jackson5sec/TaskSchedLPE - https://github.com/lnick2023/nicenice - https://github.com/mishmashclone/SecWiki-windows-kernel-exploits - https://github.com/nicolas-gagnon/windows-kernel-exploits - https://github.com/paramint/windows-kernel-exploits - https://github.com/playerKe0402/Metasploit-Note - https://github.com/qazbnm456/awesome-cve-poc - https://github.com/rdoix/Red-Team-Cheat-Sheet - https://github.com/renzu0/Windows-exp - https://github.com/root26/bug - https://github.com/safesword/WindowsExp - https://github.com/saiyuki1919/BlackHat2019 - https://github.com/seeu-inspace/easyg - https://github.com/sourceincite/CVE-2018-8440 - https://github.com/valentinoJones/Windows-Kernel-Exploits - https://github.com/xbl3/awesome-cve-poc_qazbnm456 - https://github.com/xfinest/windows-kernel-exploits - https://github.com/ycdxsb/WindowsPrivilegeEscalation - https://github.com/yige666/windows-kernel-exploits - https://github.com/yisan1/hh - https://github.com/yiyebuhuijia/windows-kernel-exploits