Beveiligingsadvies

CVE-2026-7791

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-05-04 22:07:35
Laatst bijgewerkt 2026-05-06 03:56:05
Toegewezen door AMZN
CVSS-score 8.5
Status PUBLISHED

Beschrijving

Improper privilege management in the log rotation mechanism of the Skylight Workspace Config Service in Amazon WorkSpaces for Windows before 2.6.2034.0 allows a local non-admin authenticated user to place arbitrary files into arbitrary locations bypassing file system permission protections, leading to local privilege escalation to SYSTEM.