Typical severity: High. Likelihood of attack: Low. An adversary exploits a weakness in access control to modify the execution parameters of a Windows service. The goal of this attack is to execute a malicious binary in place of an existing service.
Ensure proper permissions are set for Registry hives to prevent users from modifying keys for system components that may lead to privilege escalation.