Skip to content

This is a program that utilizes FSRM for Windows Server privileges. Initially he could only do arbitrary file deletions, but now he can do arbitrary file writes.

Notifications You must be signed in to change notification settings

Surager/FSRMEop

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

FSRMEop

This is a program that utilizes FSRM for Windows Server privileges. Initially he could only do arbitrary file deletions, but now he can do arbitrary file writes.

MSRC response: image-20240420193405431

And it's not the default service, so I'm publicizing it and discussing the case with the community.

Usage

You need to create a file expiration task first.

The scope is set to C:\test. the expiration directory is a random directory.

And set the expiration condition to be a file name matching *.txt ( actually makes it harder to exploit ).

video.mp4

About

This is a program that utilizes FSRM for Windows Server privileges. Initially he could only do arbitrary file deletions, but now he can do arbitrary file writes.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published