Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-1675 PoC — Microsoft Windows Print Spooler Components 安全漏洞

Source
Associated Vulnerability
Title:Microsoft Windows Print Spooler Components 安全漏洞 (CVE-2021-1675)
Description:Microsoft Windows Print Spooler Components是美国微软(Microsoft)公司的一个打印后台处理程序组件。 Microsoft Windows Print Spooler Components存在安全漏洞。以下产品和版本受到影响:Windows 10 Version 1809 for 32-bit Systems,Windows 10 Version 1809 for x64-based Systems,Windows 10 Version 1809 for AR
Description
see https://github.com/cube0x0/CVE-2021-1675
File Snapshot

[4.0K] /data/pocs/14d785c15239bf60dcec801e701ada29cb8fa55c ├── [ 152] docker-compose.yml ├── [ 651] Dockerfile ├── [4.0K] Figures │   ├── [ 20K] AddPrinterDriverEx Opnum.png │   ├── [ 14K] AddPrinterDriverEx.png │   ├── [ 41K] AnsiCallUnicode.png │   ├── [ 82K] AnsiToUnicode.png │   ├── [ 12K] APD_1.png │   ├── [ 42K] APD.png │   ├── [6.4K] backup file.png │   ├── [ 34K] bittest in spl.png │   ├── [ 46K] copy config file.png │   ├── [ 58K] copy data file.png │   ├── [6.2K] copy file.png │   ├── [3.5M] exploit.gif │   ├── [ 40K] Function Calls.png │   ├── [ 64K] GetUnicodeProcAddress.png │   ├── [ 65K] IsElevated.png │   ├── [ 28K] JudgeIsElevated.png │   ├── [4.7K] Load Image.png │   ├── [ 57K] LocalAddPrinterDriverEx.png │   ├── [ 69K] NdrClientCall3.png │   ├── [ 52K] pDriverInfo.png │   ├── [9.6K] Print Spooler Architecture.png │   ├── [ 88K] restrict in async.png │   ├── [ 36K] restrict in rpcadd.png │   ├── [ 24K] RpcAsyncAddPrinterDriver Receive.png │   ├── [ 18K] RpcAsyncAddPrinterDriver Send.png │   ├── [ 74K] second time call.png │   ├── [ 83K] set arguments.png │   ├── [ 73K] SplAddPrinterDriverEx.png │   ├── [ 23K] spoolss uuid.png │   ├── [5.6K] spoolsv user.png │   ├── [ 59K] thread start YAddPrinterDriverEx.png │   ├── [ 20K] winspool call AddPrinterDriverExW.png │   ├── [ 64K] YIsElevated.png │   └── [ 61K] YIsElevationRequired.png ├── [8.3K] main.py ├── [5.8K] my_rprn.py ├── [ 17K] README.adoc └── [ 268] smb.conf 1 directory, 40 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.