Windows Kernel Exploits

Privilege Escalation Table - Useful as patches are not supported so should be a priority:

Operating System

Description

Security Bulletin

KB

Exploit

Windows Server 2016

Windows Kernel Mode Drivers

MS16-135

3199135

Exploit

Github

Windows Server 2008 ,7,8,10 Windows Server 2012

Secondary Logon Handle

MS16-032

3143141

GitHub

ExploitDB

Metasploit

Windows Server 2008, Vista, 7

WebDAV

MS16-016

3136041

Github

Windows Server 2003, Windows Server 2008, Windows 7, Windows 8, Windows 2012

Windows Kernel Mode Drivers

MS15-051

3057191

GitHub

ExploitDB

Metasploit

Windows Server 2003, Windows Server 2008, Windows Server 2012, 7, 8

Win32k.sys

MS14-058

3000061

GitHub

ExploitDB

Metasploit

Windows Server 2003, Windows Server 2008, 7, 8, Windows Server 2012

AFD Driver

MS14-040

2975684

Python

EXE

ExploitDB

Github

Windows XP, Windows Server 2003

Windows Kernel

MS14-002

2914368

Metasploit

Windows Server 2003, Windows Server 2008, 7, 8, Windows Server 2012

Kernel Mode Driver

MS13-005

2778930

Metasploit

ExploitDB

GitHub

Windows Server 2008, 7

Task Scheduler

MS10-092

2305420

Metasploit

ExploitDB

Windows Server 2003, Windows Server 2008, 7, XP

KiTrap0D

MS10-015

977165

Exploit

ExploitDB

GitHub

Metasploit

Windows Server 2003, XP

NDProxy

MS14-002

2914368

Exploit

ExploitDB

ExploitDB

Github

Windows Server 2003, Windows Server 2008, 7, 8, Windows Server 2012

Kernel Driver

MS15-061

3057839

Github

Windows Server 2003, XP

AFD.sys

MS11-080

2592799

EXE

Metasploit

ExploitDB

Windows Server 2003, XP

NDISTAPI

MS11-062

2566454

ExploitDB

Windows Server 2003, Windows Server 2008, 7, 8, Windows Server 2012

RPC

MS15-076

3067505

Github

Windows Server 2003, Windows Server 2008, 7, 8, Windows Server 2012

Hot Potato

MS16-075

3164038

GitHub

PowerShell

HotPotato

Windows Server 2003, Windows Server 2008, 7, XP

Kernel Driver

MS15-010

3036220

GitHub

ExploitDB

Windows Server 2003, Windows Server 2008, 7, XP

AFD.sys

MS11-046

2503665

EXE

ExploitDB

Tools

Windows Exploit Suggester Powershell - SHERLOCK