Description
Remote Sunrise Helper for Windows version 2026.14 suffers from a local UAC bypass vulnerability via the Icon Import dialog...
Basic Information
ID
PACKETSTORM:219278
Published
Apr 20, 2026 at 00:00
Affected Product
Affected Versions
# Exploit Title: Remote Sunrise Helper for Windows 2026.14 - UAC Bypass via
Icon Import Dialog
# Date: 2026-04-20
# Exploit Author: Chokri Hammedi
# Software: https://rs.ltd/latest.php?os=win
# Vendor: https://rs.ltd/
# Version: 2026.14
# Tested on: Windows 10 / Windows 11
#
# Description:
# Local UAC bypass via Actions > Add Action > Icon Import file dialog.
# In the file path field, enter C:\Windows\System32\cmd.exe and click the
arrow.
# This opens a command prompt as Administrator without UAC consent dialog.
#
# Steps to Reproduce:
# 1. Open Remote for Windows
# 2. Go to Actions > Add Action
# 3. Click the empty icon to open file import dialog
# 4. In the file path field, type: C:\Windows\System32\cmd.exe
# 5. Click the arrow button next to the path field
# 6. CMD opens as Administrator without UAC prompt
Icon Import Dialog
# Date: 2026-04-20
# Exploit Author: Chokri Hammedi
# Software: https://rs.ltd/latest.php?os=win
# Vendor: https://rs.ltd/
# Version: 2026.14
# Tested on: Windows 10 / Windows 11
#
# Description:
# Local UAC bypass via Actions > Add Action > Icon Import file dialog.
# In the file path field, enter C:\Windows\System32\cmd.exe and click the
arrow.
# This opens a command prompt as Administrator without UAC consent dialog.
#
# Steps to Reproduce:
# 1. Open Remote for Windows
# 2. Go to Actions > Add Action
# 3. Click the empty icon to open file import dialog
# 4. In the file path field, type: C:\Windows\System32\cmd.exe
# 5. Click the arrow button next to the path field
# 6. CMD opens as Administrator without UAC prompt