Exploits / Vulnerability Discovered : 2019-11-22 |
Type : local |
Platform : windows
This exploit / vulnerability Litemanager 4.5.0 insecure file permissions is for educational purposes only and if it is used you will do on your own risk!
2) Rename original "ROMFUSClient.exe" to "~ROMFUSClient.exe"
3) Place our malicious "ROMFUSClient.exe" in the LiteManagerFree directory
4) Disconnect and wait for a more privileged user to connect and use ROMFUSClient IDE.
Privilege Successful Escalation