.NET Framework Runtime Optimization Service contains a flaw that may allow an attacker to gain access to unauthorized privileges. The issue is triggered when the insecure permissions in the service's EXE file allow any non-admin domain user or local power user to overwrite it, allowing an attacker to gain elevated privileges.
Classification
Location:
Local Access Required
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Solution:
Solution Unknown
Exploit:
Exploit Public
Disclosure:
Uncoordinated Disclosure
Solution
OSVDB is not aware of a solution for this vulnerability.