Proof of concept about a path traversal vulnerability in Microsoft's Diagcab technology that could lead to remote code execution
β21Jun 16, 2022Updated 4 years ago
Alternatives and similar repositories for microsoft-diagcab-rce-poc
Users that are interested in microsoft-diagcab-rce-poc are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- πΎDogwalk PoC (using diagcab file to obtain RCE on windows)β76Aug 11, 2022Updated 3 years ago
- A sample spyware written in VB.NETβ20Mar 11, 2017Updated 9 years ago
- Yet, Another Packer/Loaderβ25Feb 26, 2023Updated 3 years ago
- Write-up for another forgotten Windows vulnerability (0day): Microsoft Windows Contacts (VCF/Contact/LDAP) syslink control href attributeβ¦β155Jun 18, 2023Updated 3 years ago
- may the poc with youβ16May 6, 2022Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient β’ AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- SettingContent-MS File Execution vulnerability in Windows 10β24Jan 7, 2026Updated 6 months ago
- Yet another Windows DLL injector.β39Nov 17, 2021Updated 4 years ago
- Proof of Concept code for CVE-2020-0728β46Feb 12, 2020Updated 6 years ago
- β34Apr 15, 2022Updated 4 years ago
- Python script to leverage MSFT_MTProcess WMI classβ40Sep 17, 2025Updated 10 months ago
- PoC of injecting code into a running Linux processβ22Sep 11, 2019Updated 6 years ago
- A PoC~ish of https://elastic.github.io/security-research/malware/2022/01/01.operation-bleeding-bear/article/β31Feb 26, 2024Updated 2 years ago
- A years-old exploit of a local EoP vulnerability in Kingsoft Antivirus KWatch Driver version 2009.3.17.77.β38Mar 16, 2022Updated 4 years ago
- python tool for backdooring an android apk with meterpreter payload & bypass some AVβ24Sep 30, 2020Updated 5 years ago
- Virtual machines for every use case on DigitalOcean β’ AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Alternative Mimikatz LSASS DUMPERβ14Apr 2, 2020Updated 6 years ago
- β22Jun 9, 2024Updated 2 years ago
- β16Feb 29, 2020Updated 6 years ago
- Proof of concept for CVE-2021-24086, a NULL dereference in tcpip.sys triggered remotely.β236Apr 15, 2021Updated 5 years ago
- POC of CVE-2022-21881 exploited at TianfuCup 2021 to escape Chrome Sandboxβ21Aug 9, 2022Updated 3 years ago
- Ivanti EPM SQL Injection Remote Code Execution Vulnerabilityβ25Jun 12, 2024Updated 2 years ago
- PoC for CVE-2025-48384β20Jul 9, 2025Updated last year
- β29Aug 10, 2019Updated 6 years ago
- β33Aug 10, 2019Updated 6 years ago
- Managed Database hosting by DigitalOcean β’ AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- x64 Windows privilege elevation using anycallβ22May 28, 2021Updated 5 years ago
- β126Sep 5, 2024Updated last year
- Ivanti EPM AgentPortal RCE Vulnerabilityβ20Sep 16, 2024Updated last year
- PoC MSI payload based on ASEC/AhnLab's blog postβ25Sep 19, 2022Updated 3 years ago
- β18Sep 9, 2025Updated 10 months ago
- CVE-2019-1064 Local Privilege Escalation Vulnerabilityβ11Jun 12, 2019Updated 7 years ago
- CVE-2024-40431+CVE-2022-25479 chain for EOP(DATA ONLY ATTACK)β47Oct 16, 2024Updated last year
- A PoC weaponising CustomXMLPart for hiding malware code inside of Office document structures.β39Aug 8, 2022Updated 3 years ago
- β18Dec 12, 2020Updated 5 years ago
- Virtual machines for every use case on DigitalOcean β’ AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A blind XXE injection callback handler. Uses HTTP and FTP to extract information. Originally written in Ruby by ONsec-Lab.β11Mar 18, 2019Updated 7 years ago
- Exploit for CVE-2021-27342 vulnerability (telnet authentication brute-force protection bypass)β15May 15, 2021Updated 5 years ago
- β22Mar 6, 2023Updated 3 years ago
- Proof of Concept Exploit for CVE-2024-9465β31Oct 9, 2024Updated last year
- Proof of Concept for EFSRPC Arbitrary File Upload (CVE-2021-43893)β64Feb 14, 2022Updated 4 years ago
- β246Sep 6, 2022Updated 3 years ago
- A crypto trading bot script made in Python to backtest a RSI strategy focused on scalping in the 1-5-15m timeframes with high W/R in Spotβ¦β25Dec 9, 2023Updated 2 years ago