Windows Edge/IE Isolated Private Namespace Insecure Boundary Descriptor Privilege Escalation

The isolated private namespace created by ierutils has an insecure boundary descriptor which allows any non-appcontainer sandbox process (such as chrome) or other users on the same system to gain elevated permissions on the namespace directory which could lead to elevation of privilege.

Leave a Reply