Rapid7 Vulnerability & Exploit Database

MS16-124: Security Update for Windows Registry (3193227)

Free InsightVM Trial No Credit Card Necessary
2024 Attack Intel Report Latest research by Rapid7 Labs
Back to Search

MS16-124: Security Update for Windows Registry (3193227)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:N)
Published
10/11/2016
Created
07/25/2018
Added
10/11/2016
Modified
11/18/2021

Description

Multiple elevation of privilege vulnerabilities exist in Microsoft Windows when a Windows kernel API improperly allows a user to access sensitive registry information. To exploit the vulnerabilities, a locally authenticated attacker would need to run a specially crafted application.

Solution(s)

  • WINDOWS-HOTFIX-MS16-118-1bf48107-e079-4133-9890-5ef791aa4e62
  • WINDOWS-HOTFIX-MS16-118-4e7c8e1a-dd64-4e39-b519-19a33d996e28
  • WINDOWS-HOTFIX-MS16-118-9ebcd0d6-84aa-48d2-bde3-70b835b128fd
  • WINDOWS-HOTFIX-MS16-118-b0d85b65-fdb5-49b3-8e66-1c3a9be9c543
  • WINDOWS-HOTFIX-MS16-118-d0e44bd1-76fa-411e-8ed0-024899e6c84f
  • WINDOWS-HOTFIX-MS16-118-d2124cb6-5221-4db3-924b-2f7e20d8a477
  • WINDOWS-HOTFIX-MS16-120-442dc6a8-4cc0-421a-b91e-fb304aa12ff6
  • WINDOWS-HOTFIX-MS16-120-45826738-4428-4d7b-bc20-114e64ec7667
  • WINDOWS-HOTFIX-MS16-120-4cd4109b-acf8-4b81-9390-676662386707
  • WINDOWS-HOTFIX-MS16-120-51ae83e7-0a93-42f4-8884-91e24e358cde
  • WINDOWS-HOTFIX-MS16-120-6b19b716-ad07-45a4-b8fa-d429679271bd
  • WINDOWS-HOTFIX-MS16-120-aa4c05e8-14f7-4a38-b0a9-98ec4816b296
  • WINDOWS-HOTFIX-MS16-120-bc4fc430-38b5-4ef5-ba85-fb8254ac9be9
  • WINDOWS-HOTFIX-MS16-120-bc659166-2d66-4ea2-aff3-c904c1c2fe62
  • WINDOWS-HOTFIX-MS16-120-d22a54d1-9d76-48a9-8d16-8de3d8f1a3fb
  • WINDOWS-HOTFIX-MS16-120-d5fd818b-b688-4795-8f8f-84435bbcefb0
  • WINDOWS-HOTFIX-MS16-120-ebfc9751-8279-4037-bf2b-11170befea0d
  • WINDOWS-HOTFIX-MS16-120-f587bb1e-9f59-4ef7-8090-e9362df2ccb8
  • WINDOWS-HOTFIX-MS16-124-1f883034-1c3d-4c56-a5ac-e18f68213ad1
  • WINDOWS-HOTFIX-MS16-124-4076960d-500d-41cb-a698-4e3e15bde25e
  • WINDOWS-HOTFIX-MS16-124-6161e498-3c0d-4c38-93ac-73e3623affc9
  • WINDOWS-HOTFIX-MS16-124-a37a18e9-2c82-4be7-8c5f-8a7cf4c70d63
  • WINDOWS-HOTFIX-MS16-124-a82844ec-8130-4e88-9807-e9ec19f28867
  • WINDOWS-HOTFIX-MS16-124-d25b65c3-15b5-4cfb-9753-64d2bfbb36e3

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;