Vulnerability Development mailing list archives

Re: Windows Vista winsat.exe Integer Overflow


From: Steve Shockley <steve.shockley () shockley net>
Date: Fri, 28 Mar 2008 23:03:55 -0400

jose () eyeos org wrote:
if you can control the
process, you can use this kind of bugs as way to trick the user to
bypass the UAC and get admin.

You'd still have to convince the user to bypass UAC when he wasn't expecting a UAC prompt, in addition to getting them to run it in the first place.


Current thread: