Point of Sale WinREST machines remote privilege escalation

Posted by Vitor Silva on Feb 12

So a year back I was massively scanning internet. This case ISPs IPs blocks where you can find easily at RIPE for
example.
Then I found some interesting hosts where SMB were open and the ACL is totally open to root file system with the same
netbios name.
All file system is writable.

I was able to find some software of WinREST https://www.grupopie.com/frontoffice.html so I was amazed how a system like
this is totaly open.
So what I thought to…

Leave a Reply