Vulnerability & Exploit Database

Back to search

MS14-062: Vulnerability in Message Queuing Service Could Allow Elevation of Privilege (2993254)

Severity CVSS Published Added Modified
7 (AV:L/AC:L/Au:N/C:C/I:C/A:C) July 26, 2014 October 14, 2014 September 09, 2016

Available Exploits 


This security update resolves a publicly disclosed vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker sends a specially crafted input/output control (IOCTL) request to the Message Queuing service. Successful exploitation of this vulnerability could lead to full access to the affected system. By default, the Message Queuing component is not installed on any affected operating system edition and can only be enabled by a user with administrative privileges. Only customers who manually enable the Message Queuing component are likely to be vulnerable to this issue.

Free Nexpose Download

Discover, prioritize, and remediate security risks today!

 Download now