Pulse Secure Windows Client <9.1.6 (CVE-2020-13162) - exploit

RedTimmy Security 2020 (c) - Twitter: https://twitter.com/redtimmysec
Compile as 32-bit binary if you don't want to die!
Compiled with Visual Studio 2015 - Community Edition
After compiling copy the generated binary into the same folder with "evil.msi" and the Pulse Secure signed binary "PulseSecureInstallerService.exe". Then run it from command line.

For more information about the bug read -> https://www.redtimmy.com/privilege-escalation/pulse-secure-windows-client/ and https://www.redtimmy.com/privilege-escalation/pulse-secure-client-for-windows-9-1-6-toctou-privilege-escalation-cve-2020-13162/