Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Penetration Testing: RE: Windows privelege escalation?

RE: Windows privelege escalation?

From: <Cedric.Baechler_at_vtg.admin.ch>
Date: Wed, 13 Jul 2005 13:52:28 +0200

I've had success with a public exploit for MS04-044 that i slightly modified and that give you SYSTEM privileges on any Win2k SP4.

Cedric

-----Message d'origine-----
De : Bones [mailto:the.bones_at_gmail.com]
Envoyé : mercredi, 13. juillet 2005 00:01
À : pen-test_at_securityfocus.com
Objet : Windows privelege escalation?

All,

Working on a pen-test here where low-privilege user accounts are easy enough to obtain on some target servers, however, escalating privs is giving us some fits.

Most of the targets are Win2003 or Win2000-SP4.

What is the current state of escalating privileges on Windows hosts?
Any new tools or working exploits out there which are publicly accessible? Most of the silver bullets of the past (like PipeUpSam,
PipeUpAdmin) are of course no longer usable largely after Win2000-SP3.
We did find some exploits (MS05-012, etc.) that might have worked, but this client is patched pretty solid.

Interested to see the feedback...

--
Bones*
the.bones_at_gmail.com
Received on Jul 13 2005
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]