Microsoft Windows Installer Elevation of Privilege (MS16-149: CVE-2016-7292; CVE-2016-7292)

An elevation of privilege vulnerability exists in the Windows Installer. The vulnerability is due to the Windows Installer failing to properly sanitize input leading to an insecure library loading behavior. A attacker could run arbitrary code with elevated system privileges.

Leave a Reply