<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Elevation-of-Privilege on Aretiq AI</title><link>https://aretiq.ai/tags/elevation-of-privilege/</link><description>Recent content in Elevation-of-Privilege on Aretiq AI</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Tue, 08 Sep 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://aretiq.ai/tags/elevation-of-privilege/index.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-69364 — Windows Print Spooler Components Elevation of Privilege</title><link>https://aretiq.ai/discoveries/cve-2026-69364-windows-print-spooler-components-eop/</link><pubDate>Tue, 08 Sep 2026 00:00:00 +0000</pubDate><guid>https://aretiq.ai/discoveries/cve-2026-69364-windows-print-spooler-components-eop/</guid><description>&lt;h2 id="summary">Summary&lt;/h2>
&lt;p>A race condition in the Windows Print Spooler service leads to a use-after-free that allows an authenticated attacker to escalate privileges to SYSTEM. The vulnerability requires the attacker to win a race during spooler component processing, but successful exploitation grants full control of the affected system.&lt;/p>
&lt;p>Microsoft rates exploitation as &lt;strong>More Likely&lt;/strong> on newer Windows versions.&lt;/p>
&lt;p>This vulnerability was discovered by Aretiq AI and responsibly disclosed to Microsoft, who addressed it in the September 2026 Patch Tuesday security updates. Microsoft has credited &lt;strong>ECooper with Aretiq.AI&lt;/strong> for reporting this vulnerability in their &lt;a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69364">security advisory&lt;/a>.&lt;/p></description></item></channel></rss>