Windows 0-day lets normal users access other users' settings
A proof-of-concept exploit dubbed LegacyHive has been released, enabling a Windows elevation-of-privilege vulnerability in the Windows User Profile Service that allows a standard user to load another user’s registry hive under their own registry classes root. Registry hives are files that store configuration data for Windows, services, applications, and user profiles.
- Severity
- Not scoredNo CVSS score recorded
- Fix
- Not confirmed
- Affects
- Windows
- Exploited
- Not confirmedNo confirmation recorded
References
- github.com · LegacyHive product
- blackpointcyber.com · webinar-blackpoint-ai-a-decade-in-the-making Cyber Security News
- exploit-db.com · 52624 Exploit-DB
- infosecurity-magazine.com · researcher-exploitarium-exploits Infosecurity Magazine
- infosecurity-magazine.com · us-insurance-regulator-confirms Infosecurity Magazine
- neuracybintel.com · acworth-cyber-incident-incransom-ransomware-group-claims-responsibility-for-georgia-citys-data-breach NeuraCybIntel
- neuracybintel.com · aflac-life-insurance-japan-cyber-breach-exposes-data-of-438-million-customers NeuraCybIntel
- openwall.com · 5 Openwall oss-security