---
id: CVE-2018-8120
title: >-
  An elevation of privilege vulnerability exists in Windows when the Win32k
  component fails to properly handle objects in memory, aka "Win32k Elevation of
  Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows
  Serve…
summary: >-
  An elevation of privilege vulnerability exists in Windows when the Win32k
  component fails to properly handle objects in memory, aka "Win32k Elevation of
  Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows
  Serve…
severity: high
cvss: 7
cvssVector: 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-404
  - CWE-404
vendor: microsoft
product: windows_7
affected:
  - windows_7
  - windows_server_2008
  - windows_server_2008 = r2
published: '2018-05-09'
updated: '2026-08-13'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2018-8120'
references:
  - url: 'http://www.securityfocus.com/bid/104034'
    label: secure@microsoft.com
  - url: 'http://www.securitytracker.com/id/1040849'
    label: secure@microsoft.com
  - url: >-
      https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8120
    label: secure@microsoft.com
  - url: 'https://www.exploit-db.com/exploits/45653/'
    label: secure@microsoft.com
  - url: 'http://www.securityfocus.com/bid/104034'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://www.securitytracker.com/id/1040849'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8120
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://www.exploit-db.com/exploits/45653/'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-8120
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - kev
  - in-the-wild
  - exploit-available
epss: 0.73434
epssPercentile: 0.99456
kev: true
kevDateAdded: '2022-03-15'
kevDueDate: '2022-04-05'
kevRansomware: true
exploited: true
exploitAvailable: true
zeroDay: true
ingestedAt: '2026-08-13T06:00:54.258Z'
exploits:
  exploitdb: true
  github: 10
  githubRepos:
    - 'https://github.com/bigric3/cve-2018-8120'
    - 'https://github.com/rip1s/CVE-2018-8120'
    - 'https://github.com/ne1llee/cve-2018-8120'
  metasploit:
    - exploit/windows/local/ms18_8120_win32k_privesc
  checkedAt: '2026-09-21T15:23:39.208Z'
---

## Overview

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2. This CVE ID is unique from CVE-2018-8124, CVE-2018-8164, CVE-2018-8166.

## Affected

- `windows_7`
- `windows_server_2008`
- `windows_server_2008 = r2`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
