vendor:
Windows 10
by:
ACTIVELabs, sailay1996, bwatters-r7
7.2
CVSS
HIGH
Privilege Escalation
264
CWE
Product Name: Windows 10
Affected Version From: Windows 10
Affected Version To: Windows 10
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows
2019
Windows 10 UAC Protection Bypass Via Windows Store (WSReset.exe) and Registry
This module exploits a flaw in the WSReset.exe file associated with the Windows Store. This binary has autoelevate privs, and it will run a binary file contained in a low-privilege registry location. By placing a link to the binary in the registry location, WSReset.exe will launch the binary as a privileged user.
Mitigation:
Ensure that the Windows Store is not used to run untrusted applications.