Back

CVE-2011-2005

HIGH CISA KEV

afd.sys in the Ancillary Function Driver in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly validate user-mode input passed to kernel mode, which allows local users to gain privileges via a crafted application, aka "Ancillary Function Driver Elevation of Privilege Vulnerability."

Published: Oct 12, 2011 Modified: Apr 22, 2026
NVD-CWE-noinfo

CVSS Metrics

CVSSv3
Attack Vector: LOCAL Attack Complexity: LOW Privileges Required: NONE User Interaction: REQUIRED Scope: UNCHANGED Confidentiality Impact: HIGH Integrity Impact: HIGH Availability Impact: HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products (3)

Vendor Product Version
microsoft windows_server_2003 -
microsoft windows_xp -
microsoft windows_xp -

Risk Scores

CVSS Score 7.8 / 10
EPSS Score 67.09%

Top 1% most likely to be exploited

Threat Score 81.3 / 100

CISA Known Exploited

Date Added: 2022-03-28
Due Date: 2022-04-18
Required Action:

Apply updates per vendor instructions.

Data Sources

NVD CISA KEV EPSS