Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability
Microsoft Windows Vista SP2, Windows Server 2008 SP2 및 R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold 및 R2, Windows RT 8.1, Windows 10 Gold 및 1511의 Secondary Logon Service는 요청 핸들을 올바르게 처리하지 않습니다. 이로 인해 로컬 사용자가 조작된 애플리케이션을 통해 권한을 획득할 수 있으며, 이 취약점은 "Secondary Logon Elevation of Privilege Vulnerability"로도 알려져 있습니다.
Microsoft Windows Vista SP2, Windows Server 2008 SP2 및 R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold 및 R2, Windows RT 8.1, Windows 10 Gold 및 1511의 Secondary Logon Service는 요청 핸들을 올바르게 처리하지 않습니다. 이로 인해 로컬 사용자가 조작된 애플리케이션을 통해 권한을 획득할 수 있으며, 이 취약점은 "Secondary Logon Elevation of Privilege Vulnerability"로도 알려져 있습니다.
한국어 설명은 영문 원문을 기준으로 제공됩니다. 제품명·버전·보안 식별자는 아래 원문과 함께 확인할 수 있습니다.
영문 원문 보기
The Secondary Logon Service in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 does not properly process request handles, which allows local users to gain privileges via a crafted application, aka "Secondary Logon Elevation of Privilege Vulnerability."