codewhitesec / HttpRemotingObjRefLeak
Additional resources for leaking and exploiting ObjRefs via HTTP .NET Remoting (CVE-2024-29059)
☆86Updated 11 months ago
Alternatives and similar repositories for HttpRemotingObjRefLeak:
Users that are interested in HttpRemotingObjRefLeak are comparing it to the libraries listed below
- Scalpel is a Burp extension for intercepting and rewriting HTTP traffic, either on the fly or in the Repeater using Python 3 scripts.☆57Updated 9 months ago
- Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)☆75Updated 9 months ago
- Utility for creating ZipSlip archives☆71Updated 2 years ago
- ☆87Updated 10 months ago
- ☆34Updated 2 years ago
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆85Updated last year
- ☆25Updated 2 years ago
- Improve automated and semi-automated active scanning in Burp Pro☆61Updated 2 years ago
- Authentication Bypass in GoAnywhere MFT☆61Updated last year
- Golden collection of weak passwords☆61Updated 3 months ago
- A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.☆112Updated last month
- Burp Suite's extension to scan and crawl Single Page Applications☆102Updated last year
- Exploit for CVE-2024-20767 - Adobe ColdFusion☆34Updated 3 months ago
- ☆26Updated 9 months ago
- ☆39Updated last month
- CVE-2023-33733 reportlab RCE☆114Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆75Updated last year
- CVE-2022-41040 - Server Side Request Forgery (SSRF) in Microsoft Exchange Server☆89Updated 2 years ago
- CVE-2025-24016: RCE in Wazuh server! Remote Code Execution☆29Updated last month
- Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409) exploit☆77Updated 5 months ago
- Apache commons text - CVE-2022-42889 Text4Shell proof of concept exploit.☆55Updated last year
- CVE-2022-46169 Cacti remote_agent.php Unauthenticated Command Injection.☆48Updated 2 years ago
- Proof of Concept Exploit for CVE-2024-9464☆45Updated 5 months ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆83Updated 4 months ago
- ☆64Updated 2 months ago
- CVE-2023-0669 GoAnywhere MFT suffers from a pre-authentication command injection vulnerability in the License Response Servlet due to des…☆101Updated 11 months ago
- Burp Suite Extension - Trigger actions and reshape HTTP request/response and WebSocket traffic using configurable rules☆99Updated 4 months ago
- Nuclei template and information about the POC for CVE-2024-25600☆28Updated last year
- CVE Collection of jQuery UI XSS Payloads☆118Updated 2 years ago
- CVE-2023-21554 Windows MessageQueuing PoC,分析见 https://www.zoemurmure.top/posts/cve_2023_21554/☆56Updated last year