Window Secondary Login Failed Sanitization

Discussion in 'News Aggregator' started by Packet Storm, 17 Mar 2016.

  1. Packet Storm

    Packet Storm Guest

    The SecLogon service does not sanitize standard handles when creating a new process leading to duplicating a system service thread pool handle into a user accessible process. This can be used to elevate privileges to Local System.

    Continue reading...
     

Share This Page

Loading...