horizon3ai / CVE-2022-40684
A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager
☆350Updated 2 years ago
Alternatives and similar repositories for CVE-2022-40684:
Users that are interested in CVE-2022-40684 are comparing it to the libraries listed below
- POC for CVE-2022-39952☆266Updated last year
- ☆407Updated 2 years ago
- Local privilege escalation via PetitPotam (Abusing impersonate privileges).☆420Updated last year
- Authenticated Remote Command Execution in Gitlab via GitHub import☆225Updated 2 years ago
- VMWare vRealize Network Insight Pre-Authenticated RCE (CVE-2023-20887)☆233Updated last year
- Kraken, a modular multi-language webshell coded by @secu_x11☆528Updated 11 months ago
- RCE exploit for CVE-2023-3519☆221Updated last year
- Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).☆512Updated 10 months ago
- CVE-2024-3400 Palo Alto OS Command Injection☆154Updated 9 months ago
- Safely detect whether a FortiGate SSL VPN instance is vulnerable to CVE-2023-27997 based on response timing☆131Updated 8 months ago
- Another Windows Local Privilege Escalation from Service Account to System☆825Updated 2 years ago
- Escalate Service Account To LocalSystem via Kerberos☆393Updated last year
- out-of-bounds write in Fortinet FortiOS CVE-2024-21762 vulnerability☆132Updated 10 months ago
- A script to automate privilege escalation with CVE-2023-22809 vulnerability☆152Updated last year
- exploit for f5-big-ip RCE cve-2023-46747☆204Updated 3 months ago
- POC for CVE-2022-47966 affecting multiple ManageEngine products☆126Updated 2 years ago
- An ADCS Exploitation Automation Tool Weaponizing Certipy and Coercer☆704Updated last year
- Useful C2 techniques and cheatsheets learned from engagements☆460Updated 3 months ago
- Just another Powerview alternative☆555Updated last week
- Microsoft SharePoint Server Elevation of Privilege Vulnerability☆230Updated last year
- CVE-2022-26134 Proof of Concept☆160Updated 2 years ago
- MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.☆504Updated 5 months ago
- MrKaplan is a tool aimed to help red teamers to stay hidden by clearing evidence of execution.☆256Updated last year
- PoC for CVE-2022-40684 - Authentication bypass lead to Full device takeover (Read-only)☆87Updated 2 years ago
- Awesome AV/EDR/XDR Bypass Tips☆255Updated last year
- A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.☆682Updated 2 weeks ago
- One day based on https://googleprojectzero.blogspot.com/2022/10/rc4-is-still-considered-harmful.html☆397Updated 2 months ago
- Proof-of-Concept tool to authenticate to an LDAP/S server with a certificate through Schannel☆590Updated 6 months ago
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user☆834Updated 2 years ago
- Tool to automatically exploit Active Directory privilege escalation paths shown by BloodHound☆504Updated 2 months ago