Giter Site home page Giter Site logo

kagancapar / cve-2022-29072 Goto Github PK

View Code? Open in Web Editor NEW
687.0 687.0 104.0 43 KB

7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents area.

License: GNU General Public License v3.0

HTML 100.00%

cve-2022-29072's People

Contributors

kagancapar avatar tsale avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

cve-2022-29072's Issues

Bir paket yükelemesinde bu rastladım

Merhaba Kağan Bey

Bu sorunu kaspersky öneresinde buldum ve github linki ile sizin çalışmanızı gördüm bunun için size teşekkür ederim . Ben büyük bir .exe çalıştırdım ve kuruşum dosyalarında bahsedilen dosya bulunuyordu şayet ben 7zip kullanmıyorum Winrar kullanıyordum
ve akabinde direk sildim şuan sanırım kurtuldum sizlerede danışmak istedim
Çalışmalarınız için tebrik ederim iyi çalışmalar

Missing files

Hey bro,
I can't reproduce in my environment. Some files appear to be missing. Would you kindly upload the privesc part?

I can't reproduce

I can't reproduce the problem described in your video. what is the "privese.exe"? Is this what caused it?

无法复现

按照视频中的程序跑了一下,不存在这个提权行为,权限还是原来的普通用户权限 测试来源win10 21h2 7z版本目前最新的测试版,难道说有通过其他的方式来利用或者说是的方式有误吗 视频中的文件可否发一下

including or excluding 21.07?

the wording "7-Zip through 21.07" is not clear
I think it'll be informative to make it more understandable if there is a safe version

Is this really a 7-zip issue, or is it a Microsoft issue?

The mitigation steps don't quite make sense to me, because if someone really wanted to exploit this, they would just have to download the affected 7zip executable, the affected chm file, and the specifically crafted 7z file to any system, and voila. So that means there really is no mitigation to this other than, maybe, application blacklisting?

Am I missing something?

Expanding on the above, that means it would be far easier for someone to create a malicious dll file that explots the inherent vulnerability in Microsoft's CHM system, and then you have an exploit that doesn't depend on 7zip at all. This means that the vulnerability isn't really with 7zip at all, but with Microsoft, and there is no type of mitigation until Microsoft patches it.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.