CVE-2016-7255
Executive Summary
CVE‑2016‑7255 is a kernel‑mode privilege‑escalation flaw in multiple Windows versions (Vista SP2 through Windows 10 1607). A local user can craft a malicious application that triggers a Win32k driver bug, allowing elevation to SYSTEM. The vulnerability is actively exploited in the wild, as flagged by CISA’s KEV, posing a significant risk to unpatched or poorly secured Windows environments.
Authoritative CVE Metadata - CVSS Base Score: 7.8 (HIGH) - Published: 2016-11-10T07:00:09.460 - Last Modified: 2026-09-10T04:17:32.400
[!CAUTION] Known Exploited Vulnerability: YES (CISA KEV Added: 2021-11-03)
Original Description: The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."
"Fear not for the future, weep not for the past."
— Percy Shelley