Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Windows Process Activation Elevation of Privilege Vulnerability
Vulnerability Description
Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
在文件访问前对链接解析不恰当(链接跟随)
Vulnerability Title
Microsoft Windows Update Stack 后置链接漏洞
Vulnerability Description
Microsoft Windows Update Stack是美国微软(Microsoft)公司的用于管理更新的一部分。 Microsoft Windows Update Stack存在后置链接漏洞。攻击者利用该漏洞可以提升权限。以下产品和版本受到影响:Windows Server 2025,Windows Server 2025 (Server Core installation),Windows 10 Version 1809 for 32-bit Systems,Windows 10 Version
CVSS Information
N/A
Vulnerability Type
N/A