EQSTLab / CVE-2024-46538Links
PfSense Stored XSS lead to Arbitrary Code Execution exploit
☆49Updated last year
Alternatives and similar repositories for CVE-2024-46538
Users that are interested in CVE-2024-46538 are comparing it to the libraries listed below
Sorting:
- ☆59Updated last year
- ☆35Updated last year
- Proof of Concept Exploit for CVE-2024-9465☆30Updated last year
- POC for CVE-2024-3183 (FreeIPA Rosting)☆27Updated last year
- Proof of Concept Exploit for CVE-2024-9464☆45Updated last year
- Tamper Active Directory user attributes to collect their hashes with MS-SNTP☆55Updated last year
- Proof Of Concepts☆55Updated 3 weeks ago
- CVE-2025-24016: Wazuh Unsafe Deserialization Remote Code Execution (RCE)☆42Updated 11 months ago
- The tool that bypasses the firewall's Application Based Rules and lets you connect to anywhere, ANY IP, ANY PORT and ANY APPLICATION.☆61Updated last year
- Repo for all my exploits/PoCs☆51Updated 8 months ago
- PowerShell script to generate ShellCode in various formats☆46Updated last year
- Docker container for running CobaltStrike 4.10☆37Updated last year
- SpicyAD is a C# Active Directory penetration testing tool designed for authorized security assessments. It combines multiple AD attack te…☆95Updated last month
- POC of GITHUB simple C2 in rust☆52Updated 6 months ago
- exfiltration/infiltration toolkit☆23Updated 2 years ago
- Exploit AD CS misconfiguration allowing privilege escalation and persistence from any child domain to full forest compromise☆103Updated 2 years ago
- Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3☆26Updated last year
- Backdooring VSCode Projects☆123Updated 7 months ago
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆86Updated 10 months ago
- Duplicate not owned Token from Running Process☆74Updated 2 years ago
- Source code and examples for PassiveAggression☆64Updated last year
- ☆59Updated last year
- Microsoft Network Service Fingerprinting Tool☆64Updated 3 weeks ago
- RCE through a race condition in Apache Tomcat☆56Updated last year
- A tool to easily perform GitHub Device Code Phishing on red team engagements☆78Updated last month
- Fully automated windows credentials dumper, for SAM (classic passwords) and WINHELLO (pins). Requires to be run from a linux machine with…☆79Updated last year
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆61Updated 6 months ago
- Universal exploitation tool for CVE-2025-33073 targeting Windows Domain Controllers with DNSAdmins privileges and WinRM enabled.☆63Updated 2 months ago
- A remote unauthenticated DOS POC exploit that targets the authentication implementation of Havoc.☆36Updated 2 years ago
- Exploit for CVE-2024-5009☆13Updated last year