Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.
What privileges could be gained by an attacker who successfully exploited this vulnerability? An attacker who successfully exploited this vulnerability could gain SYSTEM privileges.
Maturity: Exploit
James Forshaw with Google Project Zero, shoodagiri with <a href="https://gmo-cybersecurity.com/">GMO Cybersecurity by Ierae Inc</a>, <a href="https://www.linkedin.com/in/daniele-linguaglossa/">Daniele Linguaglossa</a>, <a href="https://infosec.exchange/@wdormann">Will Dormann</a> with <a href="https://vu.ls/">Vul Labs</a>, yhw & txz, <a href="https://twitter.com/philiptsukerman">Philip Tsukerman</a> with Palo Alto Networks, Anonymous, <a href="https://github.com/rat5ak">Daniel Wade</a> with <a href="https://nadsec.online/">nadsec</a>, <a href="https://www.linkedin.com/in/david-c-826599a4/">David Carliez</a> with DC CyberSecurity, <a href="https://x.com/thomasklemenc">Thomas Klemenc</a>, sorte, haowei yan