Microsoft Windows COM Aggregate Marshaler Type Confusion Exploit

This module exploits a vulnerability in the IRemUnknown2 COM interface, an attacker can abuse the fact that the local unmarshaled proxy can be for a different interface to that requested by QueryInterface resulting in a type confusion, which can be leveraged to elevate privileges.
Exploit Platform
Product Name