.NET Impersonation Vulnerability in upKeeper Solutions upKeeper Instant Privilege Access

Vulnerability

A vulnerability exists in upKeeper Solutions upKeeper Instant Privilege Access versions through 1.5.0, due to a .NET misconfiguration that allows impersonation. This vulnerability enables the hijacking of a privileged thread of execution. It allows users to send and collect information from a computer running the upKeeper Instant Privilege Access client service.

Impact

Exploitation of this vulnerability could lead to unauthorized access to privileged threads of execution, allowing for the hijacking of these threads and potentially misuse of privileges.

Remediation

Users can update the upKeeper Instant Privilege Access client to version 1.6.0.4576 or later to address this vulnerability.

Added: Apr 14, 2026, 1:24 PM
Updated: Apr 14, 2026, 1:24 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.8
exploitability
7.4
remediation
0.0
relevance
5.9
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.