hackerhouse-opensource / iscsicpl_bypassUAC
- воскресенье, 17 июля 2022 г. в 00:34:33
UAC bypass for x64 Windows 7 - 11
The iscsicpl.exe binary is vulnerable to a DLL Search Order hijacking vulnerability when running 32bit Microsoft binary on a 64bit host via SysWOW64. The 32bit binary, will perform a search within user %Path% for the DLL iscsiexe.dll. This can be exploited using a Proxy DLL to execute code via "iscsicpl.exe" as autoelevate is enabled. This exploit has been tested against the following versions of Windows desktop: