Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2024-6769

Description

A DLL Hijacking caused by drive remapping combined with a poisoning of the activation cache in Microsoft Windows 10, Windows 11, Windows Server 2016, Windows Server 2019, and Windows Server 2022 allows a malicious authenticated attacker to elevate from a medium integrity process to a high integrity process without the intervention of a UAC prompt.

POC

Reference

- https://github.com/fortra/CVE-2024-6769

Github

- https://github.com/Abdelhadi963/hInject

- https://github.com/Swayampadhy/CurveLock

- https://github.com/fortra/CVE-2024-6769

- https://github.com/nomi-sec/PoC-in-GitHub