• XSS.stack #1 – первый литературный журнал от юзеров форума

Local RCE, Path traversal, POC of "DogWalk"

scr1pt__kitty

HDD-drive
Пользователь
Регистрация
30.11.2021
Сообщения
35
Реакции
21
Description vulnerability
Two-click remote code execution attack. Path traversal flaw involving the Microsoft Support Diagnostics Tool(MSDT). That can be exploited to stash a malicious executable file to the Windows Startup folder when a potential target opens a specially crafted ".diagcab" archive file that contains a diagnostics configuration file.
The vulnerability affects Windows 7 and Server Server 2008 to the latest releases.

PoC

Full advisory

Video PoC and thread in Twitter
 
Последнее редактирование:


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх