Regular AD user with permission to link GPOs

Active Directory

A regular AD user with permission to link GPOs can exploit group membership to elevate their permissions, exposing Active Directory domain security to potential attack paths.