CVE-2026-42980 PoC:Windows 内核 WMI 整数下溢本地权限提升
github.com | 漏洞 | 高危 | CVE-2026-42980 | #public-poc | #kernel-security | #privilege-escalation | #windows-security | #windows | #wmi | #integer-underflow | #cwe-122 | #cwe-191 | #vulnerability | #poc | #windows-kernel | #cve-2026-42980
摘要
CVE-2026-42980 公开披露仓库:Windows 内核 WMI 整数下溢漏洞,可在受影响构建上本地提权至 NT AUTHORITY\SYSTEM;仓库含 C 源码、构建脚本与英文/西语研究报告,供授权测试与防御研究使用。
为什么值得关注
公开代码把 Windows 内核整数下溢转化为普通用户到 SYSTEM 的本地提权,适合授权的内核安全研究和补丁验证。复现应严格限制在自有、隔离且可回滚的实验系统中,并及时应用微软修复。
- 厂商
- Microsoft
- 产品
- Windows NT OS Kernel / WMI
- 受影响版本
- Microsoft Windows builds affected by the Windows NT OS Kernel WMI integer-underflow vulnerability; consult Microsoft security updates for fixed build details
- CVSS
- 7.8
- 发布时间
- 收录时间
Skip to content