Logon Script
Last updated
Was this helpful?
Last updated
Was this helpful?
This abuse can be carried out when controlling an object that has a GenericAll
or GenericWrite
over the target, or a WriteProperty
premission over the target's logon script attribute (i.e. scriptPath
or msTSInitialProgram
).
The attacker can make the user execute a custom script at logon.
This can be achieved with .