EQSTLab / CVE-2024-46538Links
PfSense Stored XSS lead to Arbitrary Code Execution exploit
☆48Updated 9 months ago
Alternatives and similar repositories for CVE-2024-46538
Users that are interested in CVE-2024-46538 are comparing it to the libraries listed below
Sorting:
- ☆34Updated last year
- ☆59Updated 11 months ago
- Proof of Concept Exploit for CVE-2024-9464☆45Updated last year
- Proof of Concept Exploit for CVE-2024-9465☆30Updated last year
- CVE-2025-24016: Wazuh Unsafe Deserialization Remote Code Execution (RCE)☆41Updated 8 months ago
- The tool that bypasses the firewall's Application Based Rules and lets you connect to anywhere, ANY IP, ANY PORT and ANY APPLICATION.☆61Updated last year
- Repo for all my exploits/PoCs☆53Updated 5 months ago
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆41Updated 9 months ago
- POC for CVE-2024-3183 (FreeIPA Rosting)☆25Updated last year
- Personal collection of exploits and PoCs across Windows, Linux, and enterprise software.☆53Updated 3 months ago
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆87Updated 7 months ago
- Exploit AD CS misconfiguration allowing privilege escalation and persistence from any child domain to full forest compromise☆101Updated last year
- exfiltration/infiltration toolkit☆23Updated last year
- PowerShell script to generate ShellCode in various formats☆43Updated last year
- Proof of Concept for CVE-2025-32756 - A critical stack-based buffer overflow vulnerability affecting multiple Fortinet products.☆100Updated 4 months ago
- Docker container for running CobaltStrike 4.10☆37Updated last year
- ☆58Updated last year
- This repository contains scripts about ACL abuse and any other active directory attacking methods.☆36Updated 2 years ago
- ☆38Updated 10 months ago
- Exploit for CVE-2024-5009☆13Updated last year
- POC of GITHUB simple C2 in rust☆52Updated 2 months ago
- This is a GRE PoC code for Talks: From Spoofing to Tunneling: New Red Team's Networking Techniques for Initial Access and Evasion☆85Updated 2 months ago
- ☆44Updated last week
- Hunt for C2 servers and phishing web sites using VirusTotal API , you can modify code to kill the malicious process☆72Updated last year
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆60Updated 3 months ago
- ☆35Updated last year
- Generate AES128 and AES256 Kerberos keys from a given username, password, and realm☆18Updated last year
- Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3☆22Updated last year
- CVE-2024-29895 PoC - Exploiting remote command execution in Cacti servers using the 1.3.X DEV branch builds☆21Updated last year
- Veeam Backup Enterprise Manager Authentication Bypass (CVE-2024-29849)☆90Updated last year