Remote Mouse GUI 3.008 本地權限提升漏洞

From PwnWiki
Other languages:

影響版本

Version: Remote Mouse 3.008

POC

Open remote mouse from the system tray
Go to Settings
Click "Change..." in the "Image Transfer Folder" area
Save As prompt will appear
Enter "C:\Windows\System32\cmd.exe"
Command Prompt is spawned with administrator privileges