CVE-2018-8208
HIGHWindows 10 and Windows Server 2016 - Elevation of Privilege via Desktop Bridge Virtual Registry
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2018-8208. PoCs published by Google Security Research, kaisaryousuf.
AI-analyzed exploit summary This exploit leverages a race condition in the Desktop Bridge activation process on Windows 10 (1703, 1709) to create arbitrary object directories via symbolic links, leading to local privilege escalation. The PoC demonstrates the vulnerability by attempting to create a directory in the object manager namespace.
Description
An elevation of privilege vulnerability exists in Windows when Desktop Bridge does not properly manage the virtual registry, aka "Windows Desktop Bridge Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8214.
Exploits (2)
This exploit leverages a race condition in the Desktop Bridge activation process on Windows 10 (1703, 1709) to create arbitrary object directories via symbolic links, leading to local privilege escalation. The PoC demonstrates the vulnerability by attempting to create a directory in the object manager namespace.
References (4)
Scores
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H