CsEnox / CVE-2021-22911
Pre-Auth Blind NoSQL Injection leading to Remote Code Execution in Rocket Chat 3.12.1
☆56Updated last year
Alternatives and similar repositories for CVE-2021-22911:
Users that are interested in CVE-2021-22911 are comparing it to the libraries listed below
- CVE-2021-38647 - POC to exploit unauthenticated RCE #OMIGOD☆68Updated 3 years ago
- DLL to open up calc.exe to demonstrate that you injected DLLs☆23Updated 4 years ago
- This is a pre-authenticated RCE exploit for VMware vRealize Operations Manager☆48Updated last year
- A Python based ingestor for BloodHound☆83Updated 2 years ago
- ☆46Updated 2 years ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆63Updated 9 months ago
- Binary and CrackMapExec module to impersonate tokens on a windows machine☆46Updated 2 years ago
- Utility for creating ZipSlip archives☆68Updated last year
- ☆72Updated last year
- Bypass Constrained Language Mode in PowerShell☆27Updated 5 years ago
- an Evil Java RMI Registry.☆45Updated last year
- Writeup of CVE-2020-15906☆46Updated 4 years ago
- Creates a malicious ODF document help leak NetNTLM Creds☆31Updated last year
- ☆13Updated 4 years ago
- A list of weird comparison in SQL☆14Updated 2 years ago
- Just some random small tools for dealing with asp.net Forms Authentication Cookies☆23Updated 3 years ago
- Dockerized POC for CVE-2022-42889 Text4Shell☆75Updated 2 years ago
- WordPress - Authenticated XXE (CVE-2021-29447)☆42Updated 3 years ago
- POC FortiOS SSL-VPN buffer overflow vulnerability☆27Updated last year
- Simple python which takes FirstName and LastName to generate possible AD Usernames. Usefull for OSCP, Labs...☆21Updated 2 years ago
- ☆27Updated 3 years ago
- pdfkit <0.8.6 command injection shell. The package pdfkit from 0.0.0 are vulnerable to Command Injection where the URL is not properly sa…☆22Updated 2 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆25Updated 11 months ago
- ☆29Updated 2 years ago
- A mirror of several precompiled standalone red-teaming tools.☆18Updated last year
- LFI to RCE via phpinfo() assistance or via controlled log file☆60Updated last year
- CVE-2023-21554 Windows MessageQueuing PoC,分析见 https://www.zoemurmure.top/posts/cve_2023_21554/☆56Updated last year
- A small Python-Script to extract NetNTLMv2 Hashes from NTMLssp-HTTP-Authentications, which were captured in a pcap.☆23Updated last year