Prior to version 24.1, a local authenticated attacker can...
Low severity
Unreviewed
Published
Feb 16, 2024
to the GitHub Advisory Database
•
Updated Feb 16, 2024
Description
Published by the National Vulnerability Database
Feb 16, 2024
Published to the GitHub Advisory Database
Feb 16, 2024
Last updated
Feb 16, 2024
Prior to version 24.1, a local authenticated attacker can view Sysvol when Privilege Management for Windows is configured to use a GPO policy. This allows them to view the policy and potentially find configuration issues.
References