PsExec Privilege Escalation in Windows Fixed
Summary
Microsoft has finally fixed a vulnerability initially disclosed by a Tenable researcher back in January 2021.
Threat Type
Vulnerability
Overview
A component of Microsoft's Sysinternals utility was found in January 2021 to be vulnerable to privilege escalation. According to the release notes from Microsoft: "This update to PsExec mitigates named pipe squatting attacks that can be leveraged by an attacker to intercept credentials or elevate to System privilege. the -i command line switch is now necess