Microsoft Brokering File System Privilege Escalation Vulnerability
Vulnerability
A use-after-free vulnerability has been identified in the Microsoft Brokering File System, allowing an authorized attacker to locally elevate privileges. This vulnerability affects several different versions and ranges of Windows Server and Windows 11.
Impact
Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing an attacker to gain SYSTEM privileges.
Remediation
Users can apply the security updates provided in the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5058411, KB5058497, KB5058384, and the Windows Server 2022, 23H2 Edition Security Update.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
