CVE-2016-7188
Last modified
CVE-2016-7188 is a vulnerability of currently unknown severity. The Standard Collector Service in Windows Diagnostics Hub in Microsoft Windows 10 Gold, 1511, and 1607 mishandles library loading, which allows local users to gain privileges via a crafted application, aka "Windows Diagnostics Hub Elevation of Privilege Vulnerability.". EPSS estimates a 3.66% chance of exploitation in the next 30 days.
Description
The Standard Collector Service in Windows Diagnostics Hub in Microsoft Windows 10 Gold, 1511, and 1607 mishandles library loading, which allows local users to gain privileges via a crafted application, aka "Windows Diagnostics Hub Elevation of Privilege Vulnerability."
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows 10 | All versions |
| Microsoft | Windows 10 | 1511 |
| Microsoft | Windows 10 | 1607 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-7188?
How severe is CVE-2016-7188?
How do I fix CVE-2016-7188?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2016
- CVE-2016-7182The Graphics component in Microsoft Windows Vista SP2; Windo…
- CVE-2016-7183Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-7184The Common Log File System (CLFS) driver in Microsoft Window…
- CVE-2016-7185The kernel-mode drivers in Microsoft Windows Vista SP2, Wind…
- CVE-2016-7186Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-7187Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-7189The Chakra JavaScript engine in Microsoft Edge allows remote…
- CVE-2016-7190The Chakra JavaScript engine in Microsoft Edge allows remote…
- CVE-2016-7191The Microsoft Azure Active Directory Passport (aka Passport-…
- CVE-2016-7192Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-7193Microsoft Word 2007 SP2, Office 2010 SP2, Word 2013 SP1, Wor…7.8
- CVE-2016-7194The Chakra JavaScript engine in Microsoft Edge allows remote…
Are you affected by CVE-2016-7188?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
