vendor:
Windows
by:
Google Security Research
7.5
CVSS
HIGH
Privilege Escalation
269
CWE
Product Name: Windows
Affected Version From: Windows 8.1 Update
Affected Version To: Windows 8.1 Update
Patch Exists: NO
Related CWE:
CPE: o:microsoft:windows_8.1
Platforms Tested: Windows 8.1 Update
Privilege Escalation via User Profile Service
The User Profile Service in Windows 8.1 Update 32/64 bit has a bug in the way it handles impersonation. When a user logs in, certain resources in the profile are created under the user's token, but then changes to impersonating Local System, which can lead to privilege escalation. Some identified issues include recursive directory creation and creation of the temporary folder for the user under system privileges.
Mitigation:
Apply the necessary patches and updates provided by the vendor. Restrict user privileges to prevent unauthorized access. Regularly monitor and audit user profile creation activities.