Subscribe via feed.

Windows Edge/IE Isolated Private Namespace Insecure Boundary Descriptor Privilege Escalation

Posted by deepcore on October 20, 2016 – 9:58 pm

The isolated private namespace created by ierutils has an insecure boundary descriptor which allows any non-appcontainer sandbox process (such as chrome) or other users on the same system to gain elevated permissions on the namespace directory which could lead to elevation of privilege.


This post is under “exploit” and has no respond so far.
If you enjoy this article, make sure you subscribe to my RSS Feed.

Post a reply

You must be logged in to post a comment.