CVE-2014-4076: Microsoft Windows Server 2003
High severity, CVSS 7.2. EPSS: 22.7% chance of exploitation in the next 30 days.
Microsoft Windows Server 2003 SP2 allows local users to gain privileges via a crafted IOCTL call to (1) tcpip.sys or (2) tcpip6.sys, aka "TCP/IP Elevation of Privilege Vulnerability."
Affected products
- Microsoft Windows Server 2003: any version
Published 2014-11-11. Last modified 2026-06-17.