Privilege Escalation Vulnerability in QEMU Guest Agent for Windows

Privilege Escalation Vulnerability in QEMU Guest Agent for Windows

CVE-2023-0664 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their privileges on the system.

Learn more about our User Device Pen Test.