Contact Us
If you still have questions or prefer to get help directly from an agent, please submit a request.
We’ll get back to you as soon as possible.
jens.beimel@matrix42.com
Article
Last Month
Purpose and Security Objective Matrix42 is committed to the responsible, transparent, and coordinated handling of security vulnerabilities. This Vulnerability Disclosure Policy describes the public reporting channel for security researchers, customers, partners, and other third parties, as well as the internal handling of incoming vulnerability repo
Summary PBackupVSS.exe in Matrix42 Empirum creates a named pipe (\\\\.\\pipe\\PBackupVSS) with a DACL that grants GENERIC_READ and GENERIC_WRITE permissions to all authenticated users. A low-privileged local attacker can connect to this pipe and send crafted IPC messages to trigger execution of arbitrary commands with SYSTEM privileges via an untrus