不速之客:VMWare Tools 中的本地权限提升利用
swarm.ptsecurity.com | 研究 | #vulnerability-research | #windows | #saml | #vmware-tools | #vgauth | #local-privilege-escalation
摘要
PT SWARM 披露 VMware Tools Windows 版 Guest Authentication Service(VGAuth,12.5.0 build 24276846)中的一系列本地权限提升漏洞:该服务以 SYSTEM 权限运行,负责别名存储、票据认证与 SAML 认证,是常被忽视的“仅客户机”攻击面。
- 发布时间
- 收录时间
Skip to content