Zero-day Privilege Escalation Vulnerability Has Affected PsExec for 14 Years

Read the original article: Zero-day Privilege Escalation Vulnerability Has Affected PsExec for 14 Years


PsExec has been vulnerable to a local privilege escalation for the last 14 years, according to security researcher David Wells. The vulnerability lies within the PSEXESVC service which is executed as SYSTEM on the machine. PsExec relies on named pipes to communicate with this service and, if an attacker manages to create the “\PSEXESVC” named […]

The post Zero-day Privilege Escalation Vulnerability Has Affected PsExec for 14 Years appeared first on Binary Defense.


Read the original article: Zero-day Privilege Escalation Vulnerability Has Affected PsExec for 14 Years