h4x0r-dz / CVE-2024-3656
Keycloak admin API allows low privilege users to use administrative functions
☆27Updated 7 months ago
Alternatives and similar repositories for CVE-2024-3656
Users that are interested in CVE-2024-3656 are comparing it to the libraries listed below
Sorting:
- DLink DIR-846 Authenticated Remote Code Execution☆18Updated last year
- Exploits Unauth Docker API☆40Updated 3 weeks ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated last year
- Proof of Concept Exploit for CVE-2024-9465☆29Updated 7 months ago
- ☆34Updated 8 months ago
- Burp extension used to snip any header from all the requests.☆22Updated last year
- Authentication Bypass in GoAnywhere MFT☆61Updated last year
- POC for CVE-2024-36401. This POC will attempt to establish a reverse shell from the vlun targets.☆33Updated 10 months ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆28Updated 5 months ago
- Check for CVE-2024-22024 vulnerability in Ivanti Connect Secure☆30Updated last year
- Proof of Concept Exploit for CVE-2024-9464☆45Updated 7 months ago
- A Proof-Of-Concept for the CVE-2023-43770 vulnerability.☆33Updated last year
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 8 months ago
- Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3☆22Updated 8 months ago
- Unauthenticated Remote Code Execution via Angular-Base64-Upload Library☆25Updated 6 months ago
- ☆25Updated 5 months ago
- Updated Exploit - pfBlockerNG <= 2.1.4_26 Unauth RCE (CVE-2022-31814)☆23Updated 9 months ago
- ☆37Updated 5 months ago
- Unauthorized Access to Metadata and User Data like CTF☆26Updated 5 months ago
- ☆13Updated last year
- ☆34Updated last month
- PrestaXSRF is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's critical…☆31Updated last year
- PfSense Stored XSS lead to Arbitrary Code Execution exploit☆47Updated 4 months ago
- POC for CVE-2024-40348. Will attempt to read /etc/passwd from target☆30Updated 9 months ago
- CVE-2024-4879 - Jelly Template Injection Vulnerability in ServiceNow☆24Updated 10 months ago
- This repository presents a proof-of-concept of CVE-2023-22527☆12Updated last year
- ☆38Updated 3 weeks ago
- ☆16Updated 5 months ago
- Burp extension to track your current IP address. Extension focused for red teams where the attacker needs to log all used IP addresses.☆25Updated last year
- CVE-2023-6063 (WP Fastest Cache < 1.2.2 - UnAuth SQL Injection)☆29Updated last year