In Zabbix Agent and Agent 2 on Windows, the OpenSSL configuration file is loaded from a path writable by low-privileged users, allowing malicious modification and potential local privilege escalation
Incorrect permission assignment for critical resource in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.
Microsoft COM for Windows Elevation of Privilege Vulnerability
Win32k Elevation of Privilege Vulnerability
An attacker with authenticated access to VICIdial as an "agent" can execute arbitrary shell commands as the "root" user. This attack can be chained with CVE-2024-8503 to execute arbitrary shell comman
Improper access control in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within high-privileged agent components. A local, low-privileged attacker could exploit this by manipulati
Use after free in Desktop Windows Manager allows an authorized attacker to execute code locally.
Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
A logic error vulnerability exists in Serv-U which when abused could give a malicious actor with access to admin privileges the ability to execute code.
This issue requires administrative privileges
Improper access control in Azure Windows Virtual Machine Agent allows an authorized attacker to elevate privileges locally.
Azure Connected Machine Agent Elevation of Privilege Vulnerability
A potential vulnerability was reported in PC Manager that could allow a local authenticated user to execute code with elevated privileges.
CWE-269: Improper Privilege Management vulnerability exists that could cause privilege escalation and
arbitrary code execution when a privileged engineer user with console access modifies a configurat
Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
Windows Digital Media Elevation of Privilege Vulnerability
Windows Digital Media Elevation of Privilege Vulnerability
Windows Digital Media Elevation of Privilege Vulnerability
Windows Digital Media Elevation of Privilege Vulnerability
Windows Digital Media Elevation of Privilege Vulnerability