
HTB-NanoCorp-CVE-2024-0670
PowerShell exploit for CVE-2024-0670 that abuses CheckMK Agent MSI repair to escalate privileges to SYSTEM on the NanoCorp Hack The Box machine.

PowerShell exploit for CVE-2024-0670 that abuses CheckMK Agent MSI repair to escalate privileges to SYSTEM on the NanoCorp Hack The Box machine.

Local privilege escalation exploit for MSI Dragon Center's MODAPI.sys driver, abusing unauthenticated MSR writes to bypass SMEP and gain SYSTEM.

public disclosure

Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers

CVE-2022-38532 - Local Privilege Escalation vulnerability in MSI Center Application

CVE-2020-0683 - Windows MSI “Installer service” Elevation of Privilege

PoC for LPE with QlikView

# CVE-2024-12227 - NTIOLib_X64.sys DoS PoC

This exploit rebuilds and exploit the CVE-2019-16098 which is in driver Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys)…

C++ exploit for CVE-2024-37726, an arbitrary file overwrite vulnerability in MSI Center enabling local privilege escalation on Windows systems.

CVE-2021-29337 - Privilege Escalation in MODAPI.sys (MSI Dragon Center)

Windows MSI Installer LPE (CVE-2021-43883)

OpenVPN Connect for Windows (MSI) - 3.1.0.361 - Privilege Escalation

Proof-of-concept exploit for CVE-2024-50804, an arbitrary write privilege escalation vulnerability in MSI Center Pro 2.1.37.0, with detailed writeup…

The MsIo64.sys driver before 1.1.19.1016 in MSI Dragon Center before 2.0.98.0 has a buffer overflow that allows privilege escalation via a crafted…

This repository contains an exploit demonstration for CVE-2024-0670, a local privilege escalation vulnerability affecting the CheckMK Agent for…

Proof-of-concept for CVE-2024-37726: local privilege escalation in MSI Center via arbitrary file overwrite using symlink/junction attacks and OpLock…

Identifies cached Windows Installer MSI packages and retrieves matching files to investigate local privilege escalation vulnerabilities through MSI…