CyberGhost CG6Service Service SetPeLauncherState Vulnerability Local Privilege Escalation Exploit

The CG6Service Service in CyberGhost has the SetPeLauncherState method which allows a user to launch a debugger automatically for a determined process. This can be abused by an attacker to gain SYSTEM privileges by attaching to a SYSTEM process.
Monday, March 20, 2017 - 19:00