Exploitation Summary
EIP tracks 1 public exploit for CVE-2024-6769. PoCs published by fortra.
AI-analyzed exploit summary This repository contains a working PoC for CVE-2024-6769, which chains a DLL hijacking vulnerability via drive remapping with an activation cache poisoning bug in CSRSS to escalate from medium to high integrity and achieve full administrator privileges.
Description
A DLL Hijacking caused by drive remapping combined with a poisoning of the activation cache in Microsoft Windows 10, Windows 11, Windows Server 2016, Windows Server 2019, and Windows Server 2022 allows a malicious authenticated attacker to elevate from a medium integrity process to a high integrity process without the intervention of a UAC prompt.
Exploits (1)
This repository contains a working PoC for CVE-2024-6769, which chains a DLL hijacking vulnerability via drive remapping with an activation cache poisoning bug in CSRSS to escalate from medium to high integrity and achieve full administrator privileges.
References (2)
Scores
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H