The Container Manager Service accepts an access token provided by the user without verification allowing an arbitrary process to be created with another user identity leading to privilege escalation.
66a7b4179cd5c55e74f86503906a67a0fa110323561936f3ee59ec7929362af3