Inexcusable insecurity in Windows
seberry.medium.com
seberry.medium.com
As Larry Osterman noted, UAC is not a security feature.
There are many similar such UAC bypasses, e.g. https://github.com/rootm0s/WinPwnage#uac-bypass-techniques and https://github.com/hfiref0x/UACME.
I just tested this on my Windows 10 machine (running the latest 20H2 version of Win10), and I could successfully launch diskpart.exe and other executables without any UAC prompt. Although Windows Defender did block me from launching cmd.exe or regedit.exe.
I would agree with the author that this is a risk that should be fixed.
How can anyone assume Windows to be secure or have reasonable defaults? Have you looked at it?