-
Notifications
You must be signed in to change notification settings - Fork 120
Open
Labels
PRPPatch Reward Program: This label is added to all PRP related issues for easy filteringPatch Reward Program: This label is added to all PRP related issues for easy filteringPRP:RequestPatch Reward Program: This issue is a PRP contribution request and is being reviewed by the panel.Patch Reward Program: This issue is a PRP contribution request and is being reviewed by the panel.
Description
- Identifier of the vulnerability: Windows Service Privilege Escalation
- Affected software: All Microsoft Windows Versions
- Popularity of affected software {e.g.
Sofware X has Y million lifetime downloads / is used by Z% of Fortune 500 companies for network management} - Type of vulnerability: Privilege Escalation
- Resources:
After seeing PAM Misconfiguration vulnerability detector, maybe we can create a Windows Service misconfiguration detector for potential privilege escalation vulnerabilities. Namely weak ACL on service binaries, weak service configuration ACLs, Unquoted service path.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
PRPPatch Reward Program: This label is added to all PRP related issues for easy filteringPatch Reward Program: This label is added to all PRP related issues for easy filteringPRP:RequestPatch Reward Program: This issue is a PRP contribution request and is being reviewed by the panel.Patch Reward Program: This issue is a PRP contribution request and is being reviewed by the panel.