Subscribe via feed.

Microsoft Windows EFSRPC Arbitrary File Upload / Privilege Escalation

Posted by deepcore on January 14, 2022 – 10:06 am

The EFSRPC service on Microsoft Windows Server versions 2019 and 2022 does not prevent a caller specifying a local device path allowing any authenticated user to upload arbitrary files to a server.


This post is under “exploit” and has no respond so far.
If you enjoy this article, make sure you subscribe to my RSS Feed.

Post a reply

You must be logged in to post a comment.