Windows VHDMP Incorrect Impersonation Handling Privilege Escalation

The VHDMP driver does not correctly handle impersonation levels leading to the possibility of impersonating a privileged token when performing certain actions such as creating/modifying a VHD leading to elevation of privilege.

Leave a Reply