GOG Galaxy LPE Exploit# CVE-2022-31262
GOG Galaxy 2.X LPE Exploit [CVE-2022-31262](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31262)
Tested Versions 2.0.46 - 2.0.51 (latest at 11.08.2022), older versions may also be vulnerable
Blog Post about the finding: https://secure77.de/gog-galaxy-cve-2022-31262/
LPE found via: https://github.com/secure-77/PSAccessFinder
## POC Demo
[](https://www.youtube.com/watch?v=Bgdbx5TJShI)
Thanks to [Wh04m1001](https://github.com/Wh04m1001) for the cpp support
[4.0K] /data/pocs/4e7145b6364758877b1a517798a60520c1dff34b
├── [5.1K] exploit.ps1
├── [1.6K] GalaxyCommunication.cpp
├── [1.1M] GalaxyCommunication.exe
├── [1.1M] poc.gif
└── [ 572] README.md
0 directories, 5 files