
Fehlende KBs auflisten und Exploits für nützliche Privilege-Escalation-Schwachstellen vorschlagen
Watson ist ein .NET-Tool zur Aufzählung fehlender KBs und zum Vorschlagen von Exploits für Privilege Escalation-Schwachstellen.
C:\> Watson.exe
__ __ _
/ / /\ \ \__ _| |_ ___ ___ _ __
\ \/ \/ / _` | __/ __|/ _ \| '_ \
\ /\ / (_| | |_\__ \ (_) | | | |
\/ \/ \__,_|\__|___/\___/|_| |_|
v2.0
@_RastaMouse
[*] OS Build Number: 14393
[*] Enumerating installed KBs...
[!] CVE-2019-0836 : VULNERABLE
[>] https://exploit-db.com/exploits/46718
[>] https://decoder.cloud/2019/04/29/combinig-luafv-postluafvpostreadwrite-race-condition-pe-with-diaghub-collector-exploit-from-standard-user-to-system/
[!] CVE-2019-0841 : VULNERABLE
[>] https://github.com/rogue-kdc/CVE-2019-0841
[>] https://rastamouse.me/tags/cve-2019-0841/
[!] CVE-2019-1064 : VULNERABLE
[>] https://www.rythmstick.net/posts/cve-2019-1064/
[!] CVE-2019-1130 : VULNERABLE
[>] https://github.com/S3cur3Th1sSh1t/SharpByeBear
[!] CVE-2019-1253 : VULNERABLE
[>] https://github.com/padovah4ck/CVE-2019-1253
[!] CVE-2019-1315 : VULNERABLE
[>] https://offsec.almond.consulting/windows-error-reporting-arbitrary-file-move-eop.html
[*] Finished. Found 6 potential vulnerabilities.
Ich versuche, Watson nach jedem Patch Tuesday zu aktualisieren. Bei möglichen Fehlalarmen überprüfe bitte die neuesten Supersedence-Informationen im Windows Update Catalog. Wenn du dennoch der Meinung bist, dass ein Fehler vorliegt, erstelle ein Issue mit dem Label Bug.
Falls eine bestimmte Schwachstelle in Watson fehlt, die noch nicht enthalten ist, erstelle ein Issue mit dem Label Vulnerability Request und gib die CVE-Nummer an.
Falls du einen guten Exploit für eine der Schwachstellen in Watson kennst, erstelle ein Issue mit dem Label Exploit Suggestion und füge eine URL zum Exploit hinzu.