#VU95526 Improper access control in Windows and Windows Server - CVE-2024-38202
Published: August 8, 2024
Windows
Windows Server
Microsoft
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to improper access restrictions in Windows Backup when performing system restore. A local user can trick or convince an Administrator or a user with delegated permissions
into performing a system restore and escalate privileges on the system.