Описание
Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate privileges locally.
Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate privileges locally.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2026-25187
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25187
- https://www.vicarius.io/vsociety/posts/cve-2026-25187-detection-script-winlogon-elevation-of-privilege-vulnerability
- https://www.vicarius.io/vsociety/posts/cve-2026-25187-mitigation-script-winlogon-elevation-of-privilege-vulnerability
Связанные уязвимости
CVSS3: 7.8
nvd
5 месяцев назад
Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate privileges locally.
CVSS3: 7.8
fstec
5 месяцев назад
Уязвимость программы входа в систему Winlogon операционных систем Windows, позволяющая нарушителю повысить свои привилегии