FR-2024-002 - Medium to High Integrity Privilege Escalation in Microsoft Windows
Severity
Medium
Published Date
26-Sep-2024
Updated Date
26-Sep-2024
Vulnerabilities
CVE-2024-6769
Notes
Description
A DLL Hijacking caused by drive remapping combined with a poisoning of the activation cache in Microsoft Windows 10, Windows 11, Windows Server 2016, Windows Server 2019, and Windows Server 2022 allows a malicious authenticated attacker to elevate from a medium integrity process to a high integrity process without the intervention of a UAC prompt.
Vulnerabilities
Acknowledgements
Fortra would like to thank the following individuals:
- Nicolás Economou
- Ricardo Narvaja