DnsAdmin ServerLevelPluginDll Feature Abuse Privilege Escalation
Posted by deepcore on September 12, 2020 – 9:53 am
This Metasploit module exploits a feature in the DNS service of Windows Server. Users of the DnsAdmins group can set the ServerLevelPluginDll value using dnscmd.exe to create a registry key at HKLMSYSTEMCurrentControlSetServicesDNSParameters named ServerLevelPluginDll that can be made to point to an arbitrary DLL.
Post a reply
You must be logged in to post a comment.