OS-WINDOWS -- Snort has detected traffic targeting vulnerabilities in a Windows-based operating system. This does not include browser traffic or other software on the OS, but attacks against the OS itself.
OS-WINDOWS Microsoft Windows NDIS elevation of privilege attempt
This event is generated when an attacker attempts to exploit a privilege escalation vulnerability in Microsoft Windows' Network Driver Interface Specification (NDIS) API. Impact: Attempted Administrator Privilege Gain Details: This rule checks for attempts to exploit a privilege escalation vulnerability in Microsoft Windows' Network Driver Interface Specification (NDIS) API. Ease of Attack:
No information provided
No public information
No known false positives
Cisco Talos Intelligence Group
No rule groups
CVE-2019-0707 |
Loading description
|