Published on: 16 July 2026
A researcher has published a proof-of-concept (PoC) exploit code for an elevation of privilege vulnerability (known as "LegacyHive") in Microsoft Windows User Profile Service. This vulnerability could allow an attacker to gain privilege on systems as root.
Reports indicated that the proof-of-concept (PoC) exploit code for a elevation of privilege vulnerability (known as "LegacyHive") is publicly available. System administrators are advised to follow the recommendations provided by the vendors to mitigate the elevated risk of cyber attacks.
Successful exploitation of the vulnerability could lead to elevation of privilege on an affected system.
System administrators of affected systems should follow the recommendations provided by the product vendor and take immediate actions to mitigate the risk.