A vulnerability in Microsoft's implementation of the Kerberos authentication protocol allows to modify a Kerberos ticket to remotely escalate privileges. This module exploits the vulnerability impersonating a user of the domain's Administrators group to install an agent in the domain controller with System privileges.
This update introduces the option to use NTLM hashes for authentication and Network RPT-AP integration.
This update introduces the option to use NTLM hashes for authentication and Network RPT-AP integration.
CVE Link
Exploit Type - Old
Exploits/Remote
Exploit Platform
Product Name