This security update resolves a vulnerability in the TS WebProxy Windows component that could allow elevation of privilege if an attacker convinces a user to run a specially crafted application. An attacker who successfully exploited the vulnerability could gain the same user rights as the current user. If the current user is logged on by using administrative user rights, an attacker could then do the following:
- Install programs
- View, change, or delete data
- Create new accounts that have full user rights