⤷ Title: SYSTEM via WAC: How a Permissions Oversight in Windows Admin Center Leads to Full Host Compromise
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:50:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_64669 #cybersecurity #Cymulate #DLL hijacking #Microsoft #PowerShell #privilege escalation #TOCTOU #Windows Admin Center #Windows Server
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:50:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_64669 #cybersecurity #Cymulate #DLL hijacking #Microsoft #PowerShell #privilege escalation #TOCTOU #Windows Admin Center #Windows Server
Penetration Testing Tools
SYSTEM via WAC: How a Permissions Oversight in Windows Admin Center Leads to Full Host Compromise
Cymulate Research Labs has uncovered a local privilege escalation vulnerability in Microsoft Windows Admin Center (WAC) version 2.4.2.1,