Microsoft Windows EFSRPC Arbitrary File Upload / Privilege Escalation ≈ Packet Storm

Home[1] Files[2] News[3] Contact[4] Add New[5]

Microsoft Windows EFSRPC Arbitrary File Upload / Privilege Escalation[6]
Authored by James Forshaw[7], Google Security Research[8]

The EFSRPC service on Microsoft Windows Server versions 2019 and 2022 does not prevent a caller specifying a local device path allowing any authenticated user to upload arbitrary files to a server.

systems | windows[9]
advisories | CVE-2021-43893[10]
MD5 | afc6cc4bf0749f217e9277351f3b9e94

Login[14] or Register[15] to add favorites

File Archive:

January 2022

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa

File Tags

File Archives

Systems

packet storm

© 2020 Packet Storm. All rights reserved.

Services
Security Services[119]
Hosting By
Rokasec[120]
close
Image

Pensée du jour :

Ce que l'homme a fait ,

l'homme peut le défaire.

 

"No secure path in the world"