Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2016-0051 PoC — Microsoft Windows WebDAV 特权提升漏洞

Source
Associated Vulnerability
Title:Microsoft Windows WebDAV 特权提升漏洞 (CVE-2016-0051)
Description:The WebDAV client in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "WebDAV Elevation of Privilege Vulnerability."
Readme
Proof-of-concept BSoD (Blue Screen of Death) and Elevation of Privilege (to SYSTEM) code for my CVE-2016-0051 (MS-016).

vulnerabilty poc auhor: koczkatamas
https://twitter.com/koczkatamas
Original code: https://github.com/koczkatamas/CVE-2016-0051
Thanks to  koczkatamas 



this PoC will run from CMD and the shell will spwan in the same CMD -pid-

Please refer to the link above for further information

<img src="https://i.gyazo.com/7cdc95001e67c5ce55ff53fb917f47f2.png" img>


this repo contains the sources code for windows 7 PoC, also they already compiled if you have trouble
copy EoP.exe and Shellcode.dll to Win7 machine, run the exploit
got sys?

https://twitter.com/hex00r

You can find both exploits on Exploit-db
1) koczkatamas
https://www.exploit-db.com/exploits/39432/

2) hex0r
https://www.exploit-db.com/exploits/39788/


Compiled with VS
C#


File Snapshot

Log in to view the POC file snapshot cached by Shenlong Bot

Log in to view
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →