Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2026-34990-poc — LPE PoC for CVE-2026-34990 using a CUPS root file write vulnerability. | Kitploit
Tools/GitHubGitHub/dennisdgr/cve-2026-34990-poc
Privilege EscalationVulnerability AnalysisExploitationPenetration TestingPayload Development
GitHubdennisdgr/cve-2026-34990-poc

CVE-2026-34990-poc

LPE PoC for CVE-2026-34990 using a CUPS root file write vulnerability.

View Repository
123 days agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2026-34990: CUPS 2.4.16 local privilege escalation PoC

A Python3 adaptation of the original CUPS disclosure and PoC that runs as an ordinary local user against an existing CUPS service. It demonstrates a leaked Authorization: Local token and a race that lets CUPS write a file as root.

Usage

python3 cve-2026-34990.py --check       # Test for a root-owned file write
python3 cve-2026-34990.py               # Open a root shell
python3 cve-2026-34990.py -c 'id'       # Run one command as root

Successful execution temporarily creates a sudoers entry, runs the requested action, and attempts to remove the entry and queues afterward.

Optional flags include --cups-port, --listen-port, --proof-dir, --attempts, and --iterations; see --help.

Attribution

Vulnerability discovery, original research, and original PoC: Asim Viladi Oglu Manizada (@manizada), as documented in the OpenPrinting security advisory.

This repository's script adapts the published attack to run without root setup on an existing CUPS installation, adds a non-persistent proof mode, and attempts cleanup.

Download Tool