
An "Incorrect Use of a Privileged API" vulnerability in PrintixService.exe, in Printix's "Printix Secure Cloud Print Management", Version 1.3.1106.0 and below allows a Local Or Remote attacker the ability change all HKEY Windows Registry values as SYSTEM context via the UITasks.PersistentRegistryData parameter.
A system admin's complete nightmare, users changing the registry from anywhere and everywhere without authentication.
Explore the docs »
View Demo
.
Report Bug
.
Request Feature

An "Incorrect Use of a Privileged API" vulnerability in PrintixService.exe, in Printix's "Printix Secure Cloud Print Management", Version 1.3.1106.0 and below allows a Local Or Remote attacker the ability change all HKEY Windows Registry values as SYSTEM context via the UITasks.PersistentRegistryData parameter.
Here's why this is a big issue:
Any machine that has any version of Printix installed (<= 1.3.1106.0 as of 3/1/2022) is highly vulnerable to this exploit. A patch could be released within a couple months, yet this may take even longer due to how embedded this command is inside their API, and how their entire authentication framework has to be changed.
This was discovered on 10/2/2021, and a CVE was reserved on 3/1/2022.
.NET Framework 4.8
There are two options to this project, such as compiling the solution yourself or just downloading and running the precompiled software.
You will need to install Visual Studio, or have downloaded the perquisite libraries.
Download the project, and open it in Visual Studio.
Ensure that all NuGet packages are referenced.
Enjoy.
This is a console based program, so all you have to do is run the program.
See the open issues for a list of proposed features (and known issues).
Contributions are what make the open source community such an amazing place to be learn, inspire, and create. Any contributions you make are greatly appreciated.
Distributed under the MIT License. See LICENSE for more information.