{"id":"CVE-2015-2546","title":"The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privile…","summary":"The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privile…","severity":"high","cvss":8.2,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H","cwe":["CWE-119","CWE-119"],"vendor":"microsoft","product":"windows_10_1507","affected":["windows_10_1507","windows_7","windows_8","windows_8.1","windows_rt","windows_rt_8.1","windows_server_2008","windows_server_2008 = r2","windows_server_2012","windows_server_2012 = r2","windows_vista"],"published":"2015-09-09","updated":"2026-08-14","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2015-2546","references":[{"url":"http://www.securityfocus.com/bid/76608","label":"secure@microsoft.com"},{"url":"http://www.securitytracker.com/id/1033485","label":"secure@microsoft.com"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-097","label":"secure@microsoft.com"},{"url":"http://www.securityfocus.com/bid/76608","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securitytracker.com/id/1033485","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-097","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2015-2546","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"tags":["nvd","kev","in-the-wild","exploit-available"],"epss":0.10107,"epssPercentile":0.95491,"kev":true,"kevDateAdded":"2022-03-15","kevDueDate":"2022-04-05","kevRansomware":true,"exploited":true,"zeroDay":true,"ingestedAt":"2026-08-14T06:15:27.250Z","exploits":{"github":1,"githubRepos":["https://github.com/k0keoyo/CVE-2015-2546-Exploit"],"checkedAt":"2026-09-21T15:23:33.555Z"},"exploitAvailable":true,"slug":"CVE-2015-2546","body":"## Overview\n\nThe kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka \"Win32k Memory Corruption Elevation of Privilege Vulnerability,\" a different vulnerability than CVE-2015-2511, CVE-2015-2517, and CVE-2015-2518.\n\n## Affected\n\n- `windows_10_1507`\n- `windows_7`\n- `windows_8`\n- `windows_8.1`\n- `windows_rt`\n- `windows_rt_8.1`\n- `windows_server_2008`\n- `windows_server_2008 = r2`\n- `windows_server_2012`\n- `windows_server_2012 = r2`\n- `windows_vista`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"abyssal","depthScore":77,"depthScoreParts":{"impact":45.1,"likelihood":2,"exploitation":25,"ransomware":5},"changes":[{"seq":4440,"id":"CVE-2015-2546","ts":1788887180010,"field":"exploit_available","old":"false","new":"true"},{"seq":3323,"id":"CVE-2015-2546","ts":1788886299084,"field":"exploit_available","old":"true","new":"false"},{"seq":2178,"id":"CVE-2015-2546","ts":1788882968894,"field":"exploit_available","old":"false","new":"true"},{"seq":1207,"id":"CVE-2015-2546","ts":1788882368253,"field":"exploit_available","old":"true","new":"false"},{"seq":321,"id":"CVE-2015-2546","ts":1788881815162,"field":"exploit_available","old":"false","new":"true"}]}