vendor:
Windows
by:
7.5
CVSS
HIGH
Elevation of Privilege
269
CWE
Product Name: Windows
Affected Version From: Windows 10 1809
Affected Version To:
Patch Exists: YES
Related CWE:
CPE: o:microsoft:windows
Platforms Tested: Windows
CmKeyBodyRemapToVirtualForEnum Arbitrary Key Enumeration EoP
The kernel’s Registry Virtualization doesn’t safely open the real key for a virtualization location leading to enumerating arbitrary keys resulting in EoP.
Mitigation:
Apply the latest security patches provided by Microsoft.