CVE-2016-0135Improper Restriction of Operations within the Bounds of a Memory Buffer in Microsoft Windows 10

Severity
8.4HIGHNVD
EPSS
0.5%
top 33.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 12
Latest updateMay 14

Description

The Secondary Logon Service in Microsoft Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "Secondary Logon Elevation of Privilege Vulnerability."

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.5 | Impact: 5.9

🔴Vulnerability Details

1
GHSA
GHSA-m53f-cgg8-5rff: The Secondary Logon Service in Microsoft Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "Secondary Logo2022-05-14

📋Vendor Advisories

1
Microsoft
Secondary Logon Elevation of Privilege Vulnerability2016-04-12

🕵️Threat Intelligence

1
Greynoiseio
NoiseLetter March 2026

💬Community

1
Bugzilla
CVE-2016-2367 pidgin: MXIT Avatar Length Memory Disclosure Vulnerability2016-06-22