AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-1886

LOW · CVSS 2.1 EPSS 1.88%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-07-13 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 2.1. It affects Microsoft, Windows.

CVE
CVE-2011-1886
Severity
LOW
CVSS
2.1
EPSS
1.88%
Microsoft Windows

Original NVD Description

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP3 does not properly validate the arguments to functions, which allows local users to read arbitrary data from kernel memory via a crafted application that triggers a NULL pointer dereference, aka "Win32k Incorrect Parameter Validation Allows Information Disclosure Vulnerability."