2018
01.12

On Microsoft Windows, when impersonating the anonymous token in an LPAC the WIN://NOAPPALLPKG security attribute is ignored leading to impersonating a non-LPAC token leading to privilege escalation.

No Comment.

Add Your Comment

You must be logged in to post a comment.