Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Le Qi Chen

Pesquisador deTrend Micro Zero Day Initiative
#35895de 56,338
7.8CVSS total
Vulnerabilidades · 1
PT-2023-4366
7.8
2023-08-08
Microsoft · Windows · CVE-2023-35359
**Name of the Vulnerable Software and Affected Versions** Windows (affected versions not specified) **Description** The issue is related to an elevation-of-privilege vulnerability in the Windows Kernel, which is associated with insufficient access control. This vulnerability can be exploited by an attacker to elevate their privileges. The vulnerability is related to the File History Service and involves the `fhsvc.dll` and `CManagerThread::QueueBackupForLoggedOnUser`. It allows local Windows users to escalate privileges. The vulnerability was discovered by an independent researcher with SSD Secure Disclosure. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.