Materialized exploit
CVE-2020-0601
HIGH KEV1 public exploit(s) for this CVE, 0 materialized with their code.
For defensive research only. Only test on systems you own or have written authorization for. Unauthorized access is illegal.
ExploitDB
local windows
Source
Microsoft Windows - CryptoAPI (Crypt32.dll) Elliptic Curve Cryptography (ECC) Spoof Code-Signing Certificate
By Oliver Lyak
How to test this exploit
Local exploit. Run on a vulnerable install in a throwaway VM and verify the privilege escalation.
ruby 47933.rb
Code
Content not materialized yet (fetched on the next cycle).
View at source