CVE-2018-8120

HIGH KEV RANSOMWARE

Windows SetImeInfoEx Win32k NULL Pointer Dereference

Title source: metasploit

Description

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2. This CVE ID is unique from CVE-2018-8124, CVE-2018-8164, CVE-2018-8166.

Exploits (18)

exploitdb WORKING POC VERIFIED
by Metasploit · rubylocalwindows
https://www.exploit-db.com/exploits/45653
nomisec WORKING POC 500 stars
by rip1s · local
https://github.com/rip1s/CVE-2018-8120
nomisec WORKING POC 297 stars
by alpha1ab · local
https://github.com/alpha1ab/CVE-2018-8120
nomisec WORKING POC 164 stars
by bigric3 · local
https://github.com/bigric3/cve-2018-8120
nomisec WORKING POC 5 stars
by ne1llee · poc
https://github.com/ne1llee/cve-2018-8120
nomisec WORKING POC 2 stars
by EVOL4 · poc
https://github.com/EVOL4/CVE-2018-8120
nomisec WORKING POC 1 stars
by ozkanbilge · local
https://github.com/ozkanbilge/CVE-2018-8120
gitlab WORKING POC
by cy.py3.io · poc
https://gitlab.com/cy.py3.io/cve-2018-8120
github WORKING POC
by AmazingOut · cpoc
https://github.com/AmazingOut/CVE_POC/tree/main/CVE-2018-8120
nomisec NO CODE
by wikiZ · poc
https://github.com/wikiZ/cve-2018-8120
nomisec STUB
by StartZYP · poc
https://github.com/StartZYP/CVE-2018-8120
nomisec WORKING POC
by Y0n0Y · poc
https://github.com/Y0n0Y/cve-2018-8120-exp
nomisec WORKING POC
by qiantu88 · poc
https://github.com/qiantu88/CVE-2018-8120
metasploit WORKING POC GOOD
by unamer, bigric3, Anton Cherepanov, Dhiraj Mishra <[email protected]> · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/local/ms18_8120_win32k_privesc.rb
patchapalooza WORKING POC
by mirrors_unamer · poc
https://gitee.com/mirrors_unamer/CVE-2018-8120
patchapalooza WORKING POC
by mirrors_alpha1ab · poc
https://gitee.com/mirrors_alpha1ab/CVE-2018-8120
patchapalooza WRITEUP
by Ascotbe · local
https://github.com/Ascotbe/Kernelhub
patchapalooza WORKING POC
by yjhcf · poc
https://gitee.com/yjhcf/CVE-2018-8120

Scores

CVSS v3 7.0
EPSS 0.9415
EPSS Percentile 99.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CISA KEV 2022-03-15
VulnCheck KEV 2018-05-08
InTheWild.io 2018-05-08
ENISA EUVD EUVD-2018-19796
Ransomware Use Confirmed
CWE
CWE-404
Status published
Products (3)
microsoft/windows_7
microsoft/windows_server_2008
microsoft/windows_server_2008 r2 sp1 (2 CPE variants)
Published May 09, 2018
KEV Added Mar 15, 2022
Tracked Since Feb 18, 2026