cve/2018/CVE-2018-8440.md
2024-06-09 00:33:16 +00:00

69 lines
3.8 KiB
Markdown

### [CVE-2018-8440](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-8440)
![](https://img.shields.io/static/v1?label=Product&message=Windows%2010%20Servers&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Windows%2010&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Windows%207&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Windows%208.1&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Windows%20RT%208.1&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Windows%20Server%202008%20R2&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Windows%20Server%202008&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Windows%20Server%202012%20R2&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Windows%20Server%202012&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Windows%20Server%202016&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Elevation%20of%20Privilege&color=brighgreen)
### Description
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC), aka "Windows ALPC Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
### POC
#### Reference
- https://blog.0patch.com/2018/08/how-we-micropatched-publicly-dropped.html
- https://blog.0patch.com/2018/08/how-we-micropatched-publicly-dropped.html
- https://blog.0patch.com/2018/09/comparing-our-micropatch-with.html
- https://blog.0patch.com/2018/09/comparing-our-micropatch-with.html
#### Github
- https://github.com/0xT11/CVE-POC
- https://github.com/ARPSyndicate/cvemon
- https://github.com/ASR511-OO7/windows-kernel-exploits
- https://github.com/Ascotbe/Kernelhub
- https://github.com/Cruxer8Mech/Idk
- https://github.com/Jkrasher/WindowsThreatResearch_JKrasher
- https://github.com/Micr067/windows-kernel-exploits
- https://github.com/OneLogicalMyth/zeroday-powershell
- https://github.com/Ostorlab/KEV
- https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors
- https://github.com/QChiLan/win-exploit
- https://github.com/SecWiki/windows-kernel-exploits
- https://github.com/Yuki0x80/BlackHat2019
- https://github.com/albinjoshy03/windows-kernel-exploits
- https://github.com/alian87/windows-kernel-exploits
- https://github.com/asr511/windows-kernel-exploits
- https://github.com/demilson/Windows
- https://github.com/distance-vector/window-kernel-exp
- https://github.com/hectorgie/PoC-in-GitHub
- https://github.com/jackson5sec/TaskSchedLPE
- https://github.com/lnick2023/nicenice
- https://github.com/mishmashclone/SecWiki-windows-kernel-exploits
- https://github.com/nicolas-gagnon/windows-kernel-exploits
- https://github.com/paramint/windows-kernel-exploits
- https://github.com/playerKe0402/Metasploit-Note
- https://github.com/qazbnm456/awesome-cve-poc
- https://github.com/rdoix/Red-Team-Cheat-Sheet
- https://github.com/renzu0/Windows-exp
- https://github.com/root26/bug
- https://github.com/safesword/WindowsExp
- https://github.com/saiyuki1919/BlackHat2019
- https://github.com/seeu-inspace/easyg
- https://github.com/sourceincite/CVE-2018-8440
- https://github.com/valentinoJones/Windows-Kernel-Exploits
- https://github.com/xbl3/awesome-cve-poc_qazbnm456
- https://github.com/xfinest/windows-kernel-exploits
- https://github.com/ycdxsb/WindowsPrivilegeEscalation
- https://github.com/yige666/windows-kernel-exploits
- https://github.com/yisan1/hh
- https://github.com/yiyebuhuijia/windows-kernel-exploits