Exploitation Summary
EIP tracks 1 public exploit for CVE-2022-38532. PoCs published by nam3lum.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2022-38532, a local privilege escalation vulnerability in MSI Center's desktop application. The exploit abuses the CMD_AutoUpdateSDK feature in MSI.CentralServer.exe to execute arbitrary commands with administrative privileges via a local TCP connection.
Description
Micro-Star International Co., Ltd MSI Center 1.0.50.0 was discovered to contain a vulnerability in the component C_Features of MSI.CentralServer.exe. This vulnerability allows attackers to escalate privileges via running a crafted executable.
Exploits (1)
This repository contains a functional exploit for CVE-2022-38532, a local privilege escalation vulnerability in MSI Center's desktop application. The exploit abuses the CMD_AutoUpdateSDK feature in MSI.CentralServer.exe to execute arbitrary commands with administrative privileges via a local TCP connection.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H