Exploitation Summary
EIP tracks 4 public exploits for CVE-2025-53779. PoCs published by b5null, razureink, Musa-xvi.
AI-analyzed exploit summary This PowerShell script exploits CVE-2025-53779 by enumerating Active Directory ACLs to identify OUs where a user has CreateChild rights, enabling privilege escalation via child object creation. It includes functions to filter default SIDs and admin groups, focusing on non-standard permissions.
Description
Relative path traversal in Windows Kerberos allows an authorized attacker to elevate privileges over a network.
Exploits (4)
This PowerShell script exploits CVE-2025-53779 by enumerating Active Directory ACLs to identify OUs where a user has CreateChild rights, enabling privilege escalation via child object creation. It includes functions to filter default SIDs and admin groups, focusing on non-standard permissions.
This repository contains a functional exploit for CVE-2025-53779, a critical Kerberos authentication bypass vulnerability in Microsoft Windows Server KDC. The exploit forges a TGT for any domain user without credentials by manipulating the PA-PAC-REQUEST structure to bypass PAC validation.
The repository contains only a minimal README with no technical details or exploit code. It references a TryHackMe room but provides no actionable information about CVE-2025-53779.
The repository contains a PowerShell script designed to scan Active Directory for misconfigured ACLs, specifically identifying OUs where a user or their groups have CreateChild rights. It does not exploit CVE-2025-53779 but provides detection capabilities for potential privilege escalation paths.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H