vendor:
Windows
by:
Unknown
N/A
CVSS
N/A
Security Feature Bypass/Elevation of Privilege/Dangerous Behavior
CWE
Product Name: Windows
Affected Version From: Windows 10 1709
Affected Version To: Unknown
Patch Exists: Unknown
Related CWE:
CPE:
Platforms Tested: Windows
Unknown
Windows: NPFS Symlink Security Feature Bypass/Elevation of Privilege/Dangerous Behavior
It’s possible to create NPFS symlinks as a low IL or normal user and the implementation doesn’t behave in a similar manner to other types of Windows symlinks leading to dangerous behavior or EoP.