Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2021-4034 — Security documentation and lab companion for the polkit pkexec local privilege escalation, with a TryHackMe room for hands-on exploitation practice. | Kitploit
Tools/GitHubGitHub/asg-castle/cve-2021-4034
Privilege EscalationVulnerability AnalysisExploitationLearning & EducationLabs & Practice
GitHubasg-castle/cve-2021-4034

CVE-2021-4034

Security documentation and lab companion for the polkit pkexec local privilege escalation, with a TryHackMe room for hands-on exploitation practice.

View Repository
12 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2021-

A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it'll induce pkexec to execute arbitrary code. When successfully executed the attack can cause a local privilege escalation given unprivileged users administrative rights on the target machine.

TryHackMe link - tryhackme.com/jr/cve20214034

Download Tool