Rapid7 Vulnerability & Exploit Database

MS10-092: Vulnerability in Task Scheduler Could Allow Elevation of Privilege (2305420)

Back to Search

MS10-092: Vulnerability in Task Scheduler Could Allow Elevation of Privilege (2305420)

Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
12/14/2010
Created
07/25/2018
Added
12/14/2010
Modified
06/26/2020

Description

This security update resolves a publicly disclosed vulnerability in Windows Task Scheduler. The vulnerability could allow elevation of privilege if an attacker logged on to an affected system and ran a specially crafted application. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability. The vulnerability could not be exploited remotely or by anonymous users.

Solution(s)

  • WINDOWS-HOTFIX-MS10-092-4077324-legacy
  • WINDOWS-HOTFIX-MS10-092-54226362-d1b3-490e-b8d1-29edd99f2277
  • WINDOWS-HOTFIX-MS10-092-695cacd0-8e42-484b-aa0a-a9214651c88b
  • WINDOWS-HOTFIX-MS10-092-776d4e48-4b9d-412e-b95c-5d4e698ee705
  • WINDOWS-HOTFIX-MS10-092-9a46206d-3412-41e9-8d38-0e2b1c91ab58
  • WINDOWS-HOTFIX-MS10-092-b5eba905-e260-49c7-ab05-6696852cb24e
  • WINDOWS-HOTFIX-MS10-092-c4ac6063-daea-44ef-b082-ecaa562f728a
  • WINDOWS-HOTFIX-MS10-092-c5f0c444-f8ae-4b9a-a0b8-fa942e2e7656
  • WINDOWS-HOTFIX-MS10-092-e5bd2638-6d25-4d3a-b205-8128719b0bb8
  • WINDOWS-HOTFIX-MS10-092-e7703173-c8e2-41bb-a770-d54e5f646a3c
  • WINDOWS-HOTFIX-MS10-092-f73d1aad-0f00-4294-b050-c6799fed2239

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;