

CVE-2024-28905: Microsoft Brokering File System Elevation of Privilege Vulnerability

According to the CVSS metric, a successful exploitation could lead to a scope change (S:C). What does this mean for this vulnerability?

In this case, a successful attack could be performed from a low privilege AppContainer. The attacker could elevate their privileges and execute code or access resources at a higher integrity level than that of the AppContainer execution environment.

Microsoft Security Response Center
#vulnerability#microsoft#Microsoft Brokering File System#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2024-43574: Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability