CVE-2011-1281: A story of a Windows CSRSS Privilege Escalation vulnerability | j00ru//vx tech blog
Tags
attack-pattern: | Data Direct Inter-Process Communication - T1559 Server - T1583.004 Server - T1584.004 Software - T1592.002 Vulnerabilities - T1588.006 Denial Of Service |
Common Information
Type | Value |
---|---|
UUID | b63e9bca-d31a-433f-b13b-b64d42a3f276 |
Fingerprint | fc188957b0a7d554 |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | June 22, 2021, 12:25 p.m. |
Added to db | Jan. 18, 2023, 9:52 p.m. |
Last updated | Nov. 18, 2024, 1:38 a.m. |
Headline | CVE-2011-1281: A story of a Windows CSRSS Privilege Escalation vulnerability |
Title | CVE-2011-1281: A story of a Windows CSRSS Privilege Escalation vulnerability | j00ru//vx tech blog |
Detected Hints/Tags/Attributes | 66/1/31 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 1 | cve-2011-1281 |
|
Details | CVE | 1 | cve-2011-1282 |
|
Details | CVE | 1 | cve-2011-1283 |
|
Details | CVE | 1 | cve-2011-1284 |
|
Details | CVE | 1 | cve-2011-1870 |
|
Details | Domain | 243 | cve.mitre.org |
|
Details | Domain | 5 | j00ru.vexillium.org |
|
Details | Domain | 4 | magazine.hitb.org |
|
Details | Domain | 1 | magazine.hackinthebox.org |
|
Details | Domain | 79 | code.google.com |
|
Details | File | 3 | winsrv.dll |
|
Details | File | 137 | conhost.exe |
|
Details | File | 748 | kernel32.dll |
|
Details | File | 165 | csrss.exe |
|
Details | File | 212 | winlogon.exe |
|
Details | File | 30 | utilman.exe |
|
Details | File | 2127 | cmd.exe |
|
Details | File | 115 | win32k.sys |
|
Details | File | 1 | hitb-ezine-issue-004.pdf |
|
Details | File | 2 | hitb-ezine-issue-005.pdf |
|
Details | File | 1 | windows-7-windows-server-2008-r2-console-host.aspx |
|
Details | File | 1 | hitb-ezine-issue-006.pdf |
|
Details | Url | 32 | http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve |
|
Details | Url | 1 | https://j00ru.vexillium.org/?p=492 |
|
Details | Url | 1 | https://j00ru.vexillium.org/?p=502 |
|
Details | Url | 1 | https://j00ru.vexillium.org/?p=527 |
|
Details | Url | 1 | http://magazine.hitb.org/issues/hitb-ezine-issue-004.pdf |
|
Details | Url | 2 | http://magazine.hitb.org/issues/hitb-ezine-issue-005.pdf |
|
Details | Url | 1 | http://blogs.technet.com/b/askperf/archive/2009/10/05/windows-7-windows-server-2008-r2-console-host.aspx |
|
Details | Url | 1 | http://magazine.hackinthebox.org/issues/hitb-ezine-issue-006.pdf |
|
Details | Url | 1 | http://code.google.com/p/windows-handle-lister |