Documentation Index
Fetch the complete documentation index at: https://docs.bytejmp.com/llms.txt
Use this file to discover all available pages before exploring further.
Methodology
Windows Exploit Suggester
wesng (Recommended)
systeminfo output from victim:
Watson (.NET — Run on Target)
Sherlock (PowerShell — Deprecated but Works)
Check Installed Patches
Common Kernel Exploits
MS16-032 — Secondary Logon (Windows 7/8/10, Server 2008/2012)
KB3139914
MS15-051 — Win32k (Windows 7, Server 2008)
KB3045171
MS14-058 — TrackPopupMenu (Windows 7, Server 2008)
KB3000061
CVE-2021-1675 / CVE-2021-34527 — PrintNightmare
See dedicated PrintNightmare page.CVE-2021-36934 — HiveNightmare / SeriousSAM
SAM/SYSTEM readable by non-admin due to shadow copy ACL. Check:BUILTIN\Users has read access:
CVE-2023-28252 — CLFS Driver
Windows 10/11, Server 2022. CLFS kernel driver elevation.Pre-compiled Exploits
Quick Reference
| CVE | KB | Affected | Year |
|---|---|---|---|
| MS08-067 | KB958644 | XP, Server 2003 | 2008 |
| MS14-058 | KB3000061 | 7, Server 2008 | 2014 |
| MS15-051 | KB3045171 | 7, Server 2008 | 2015 |
| MS16-032 | KB3139914 | 7/8/10, Server 2008/2012 | 2016 |
| CVE-2021-1675 | KB5003690 | 10/11, Server 2016-2022 | 2021 |
| CVE-2021-36934 | KB5004945 | 10 (1809+) | 2021 |
| CVE-2023-28252 | KB5025221 | 10/11, Server 2022 | 2023 |