{
 "description": "Evidence-bound MITRE ATT&CK techniques observed in ctipilot.ch entries referencing Windows User Profile Service improper link resolution before file access \u2014 local elevation of privilege, CVSS 7.8, publicly disclosed before the fix and rated Exploitation More Likely; patched 2026-08-11. Rapid7 assesses the advisory is a solid match for the LegacyHive proof-of-concept.. Score = number of published entries mapping the technique. Pinned dataset: ATT&CK v19.2.",
 "domain": "enterprise-attack",
 "gradient": {
  "colors": [
   "#ffe766",
   "#ff6666"
  ],
  "maxValue": 1,
  "minValue": 0
 },
 "hideDisabled": false,
 "layout": {
  "layout": "side",
  "showID": true,
  "showName": true
 },
 "legendItems": [],
 "metadata": [
  {
   "name": "source",
   "value": "ctipilot.ch"
  },
  {
   "name": "entity",
   "value": "CVE-2026-62832"
  },
  {
   "name": "attack_version",
   "value": "19.2"
  }
 ],
 "name": "Windows User Profile Service improper link resolution before file access \u2014 local elevation of privilege, CVSS 7.8, publicly disclosed before the fix and rated Exploitation More Likely; patched 2026-08-11. Rapid7 assesses the advisory is a solid match for the LegacyHive proof-of-concept. \u2014 ctipilot.ch coverage",
 "sorting": 3,
 "techniques": [
  {
   "comment": "entries: 2026-08-12/cve-2026-62832-legacyhive-user-profile-service-patched",
   "score": 1,
   "techniqueID": "T1068"
  },
  {
   "comment": "entries: 2026-08-12/cve-2026-62832-legacyhive-user-profile-service-patched",
   "score": 1,
   "techniqueID": "T1112"
  },
  {
   "comment": "entries: 2026-08-12/cve-2026-62832-legacyhive-user-profile-service-patched",
   "score": 1,
   "techniqueID": "T1548"
  }
 ],
 "versions": {
  "attack": "19",
  "layer": "4.5",
  "navigator": "5.1.0"
 }
}