Definition
PrintNightmare takes advantage of the Printer Spooler, which is related to printer and runs as system administrator.
Executing PrintNightmare
- Check if the DC vulnerable to PrintNightmare
- Create the payload
- Whenever you
msfvenom
then you should msfconsole
- Now we want to share the dll file that we created file, we can do that through smbserver.py
- Now that we have done all of the previous steps, we can utilize the CVE and user ANY NORMAL USER PASSWORD to dump the hashes of the DC!