h4x0r-dz / CVE-2024-3656
Keycloak admin API allows low privilege users to use administrative functions
☆23Updated 4 months ago
Alternatives and similar repositories for CVE-2024-3656:
Users that are interested in CVE-2024-3656 are comparing it to the libraries listed below
- Updated Exploit - pfBlockerNG <= 2.1.4_26 Unauth RCE (CVE-2022-31814)☆23Updated 6 months ago
- Proof of Concept Exploit for CVE-2024-9465☆27Updated 4 months ago
- ☆34Updated 5 months ago
- Proof-of-Concept for CVE-2024-46538☆46Updated last month
- Exploit for Symfony CVE-2024-50340 (forked eos)☆27Updated 2 months ago
- This repository presents a proof-of-concept of CVE-2023-22527☆13Updated last year
- CVE-2024-29895 PoC - Exploiting remote command execution in Cacti servers using the 1.3.X DEV branch builds☆21Updated 9 months ago
- DLink DIR-846 Authenticated Remote Code Execution☆18Updated last year
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆28Updated 5 months ago
- Exploit for CVE-2024-5009☆12Updated 7 months ago
- A Moodle Scanner☆39Updated 2 months ago
- Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3☆21Updated 5 months ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 5 months ago
- Burp extension used to snip any header from all the requests.☆22Updated last year
- Check for CVE-2024-22024 vulnerability in Ivanti Connect Secure☆29Updated last year
- POC for CVE-2024-40348. Will attempt to read /etc/passwd from target☆28Updated 6 months ago
- ☆27Updated last year
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆58Updated last year
- PoC for the Veeam Recovery Orchestrator Authentication CVE-2024-29855☆16Updated 7 months ago
- CVE-2024-23108: Fortinet FortiSIEM Unauthenticated 2nd Order Command Injection☆32Updated 8 months ago
- A straightforward tool for exploiting SMTP Smuggling vulnerabilities.☆14Updated 6 months ago
- Cobalt Strike BOFS☆15Updated last year
- ☆13Updated 10 months ago
- CVE-2023-38389 < Wordpress < JupiterX Core < Unauthenticated Account Takeover☆27Updated 6 months ago
- CVE-2024-28995 POC Vulnerability Scanner☆11Updated 8 months ago
- Generate AES128 and AES256 Kerberos keys from a given username, password, and realm☆16Updated 4 months ago
- POC for CVE-2024-3183 (FreeIPA Rosting)☆18Updated 5 months ago
- This repository contains scripts about ACL abuse and any other active directory attacking methods.☆35Updated last year
- Apache HugeGraph Server Unauthenticated RCE - CVE-2024-27348 Proof of concept Exploit☆17Updated 8 months ago
- A Proof-Of-Concept for the CVE-2023-43770 vulnerability.☆33Updated last year