Описание
Microsoft Windows Search Component Elevation of Privilege Vulnerability
Absolute path traversal in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.
FAQ
What privileges could be gained by an attacker who successfully exploited this vulnerability?
An attacker who successfully exploited this vulnerability could gain SYSTEM privileges.
Обновления
| Продукт | Статья | Обновление |
|---|---|---|
| Windows Server 2022 | ||
| Windows Server 2022 (Server Core installation) | ||
| Windows 11 Version 23H2 for ARM64-based Systems | ||
| Windows 11 Version 23H2 for x64-based Systems | ||
| Windows 11 Version 24H2 for ARM64-based Systems | ||
| Windows 11 Version 24H2 for x64-based Systems | ||
| Windows Server 2025 | ||
| Windows Server 2025 (Server Core installation) | ||
| Windows 11 Version 25H2 for ARM64-based Systems | ||
| Windows 11 Version 25H2 for x64-based Systems |
Показывать по
10
Возможность эксплуатации
Publicly Disclosed
No
Exploited
No
Latest Software Release
Exploitation Less Likely
EPSS
Процентиль: 29%
0.00353
Низкий
7.8 High
CVSS3
Связанные уязвимости
CVSS3: 7.8
nvd
5 дней назад
Absolute path traversal in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.
CVSS3: 7.8
github
5 дней назад
Absolute path traversal in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.
EPSS
Процентиль: 29%
0.00353
Низкий
7.8 High
CVSS3