EIP-2026-117539
PRE-CVEMicrosoft Windows - UAC Protection Bypass (Via Slui File Handler Hijack) (PowerShell)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-117539. PoCs published by Gushmazuko.
AI-analyzed exploit summary This PowerShell script exploits a UAC bypass vulnerability by hijacking the SluiFileHandler registry key to execute arbitrary commands with elevated privileges. It manipulates the registry to associate the 'exefile' handler with a user-specified command, then triggers the bypass via slui.exe.
Description
Microsoft Windows - UAC Protection Bypass (Via Slui File Handler Hijack) (PowerShell)
Exploits (1)
This PowerShell script exploits a UAC bypass vulnerability by hijacking the SluiFileHandler registry key to execute arbitrary commands with elevated privileges. It manipulates the registry to associate the 'exefile' handler with a user-specified command, then triggers the bypass via slui.exe.