
LolModapi
Local privilege escalation exploit for MSI Dragon Center's MODAPI.sys driver, abusing unauthenticated MSR writes to bypass SMEP and gain SYSTEM.

Local privilege escalation exploit for MSI Dragon Center's MODAPI.sys driver, abusing unauthenticated MSR writes to bypass SMEP and gain SYSTEM.

PowerShell exploit for CVE-2024-0670 that abuses CheckMK Agent MSI repair to escalate privileges to SYSTEM on the NanoCorp Hack The Box machine.

# CVE-2024-12227 - NTIOLib_X64.sys DoS PoC

This repository contains an exploit demonstration for CVE-2024-0670, a local privilege escalation vulnerability affecting the CheckMK Agent for…

CVE-2022-38532 - Local Privilege Escalation vulnerability in MSI Center Application

Proof-of-concept for CVE-2024-37726: local privilege escalation in MSI Center via arbitrary file overwrite using symlink/junction attacks and OpLock…

Proof-of-concept exploit for CVE-2024-50804, an arbitrary write privilege escalation vulnerability in MSI Center Pro 2.1.37.0, with detailed writeup…

Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers

This exploit rebuilds and exploit the CVE-2019-16098 which is in driver Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys)…

PoC for LPE with QlikView

C++ exploit for CVE-2024-37726, an arbitrary file overwrite vulnerability in MSI Center enabling local privilege escalation on Windows systems.

public disclosure

Identifies cached Windows Installer MSI packages and retrieves matching files to investigate local privilege escalation vulnerabilities through MSI…

The MsIo64.sys driver before 1.1.19.1016 in MSI Dragon Center before 2.0.98.0 has a buffer overflow that allows privilege escalation via a crafted…

CVE-2020-0683 - Windows MSI “Installer service” Elevation of Privilege

Windows MSI Installer LPE (CVE-2021-43883)

CVE-2021-29337 - Privilege Escalation in MODAPI.sys (MSI Dragon Center)

OpenVPN Connect for Windows (MSI) - 3.1.0.361 - Privilege Escalation