j00sean / CVE-2022-44666
Write-up for another forgotten Windows vulnerability (0day): Microsoft Windows Contacts (VCF/Contact/LDAP) syslink control href attribute escape, which was not fully fixed as CVE-2022-44666 in the patches released on December, 2022.
☆154Updated last year
Alternatives and similar repositories for CVE-2022-44666:
Users that are interested in CVE-2022-44666 are comparing it to the libraries listed below
- Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE☆204Updated last year
- ☆128Updated last year
- Bypass Detection By Randomising ROR13 API Hashes☆136Updated 3 years ago
- This repository contains a proof-of-concept exploit written in C++ that demonstrates the exploitation of a vulnerability affecting the Wi…☆77Updated last year
- ☆56Updated 4 months ago
- Dumping LSASS with a duplicated handle from custom LSA plugin☆200Updated 3 years ago
- lazy way to create CVE-2023-38831 winrar file for testing☆91Updated last year
- ☆133Updated 2 weeks ago
- PoC for the CVE-2022-41080 , CVE-2022-41082 and CVE-2022-41076 Vulnerabilities Affecting Microsoft Exchange Servers☆92Updated 2 years ago
- ☆238Updated last year
- AV/EDR evasion via direct system calls.☆108Updated last year
- ☆162Updated last year
- DHCP Server Remote Code Execution impact: 2008 R2 SP1 до Server 2019☆69Updated last year
- PoC for CVE-2022-26809, analisys and considerations are shown in the github.io.☆107Updated 2 years ago
- ☆133Updated 2 years ago
- Exploit for CVE-2023-36802 targeting MSKSSRV.SYS driver☆112Updated last year
- Full disclosures for CVE ids, proofs of concept, exploits, 0day bugs and so on.☆112Updated last year
- An all-in-one Cobalt Strike BOF to patch, check and revert AMSI and ETW for x64 process. Both syscalls and dynamic resolve versions are a…☆131Updated 2 years ago
- A basic emulation of an "RPC Backdoor"☆239Updated 2 years ago
- POC tools for exploring SMB over QUIC protocol☆122Updated 3 years ago
- Exploits undocumented elevated COM interface ICMLuaUtil via process spoofing to edit registry then calls ColorDataProxy to trigger UAC b…☆138Updated 2 years ago
- Lockbit3.0 Microsoft Defender MpClient.dll DLL Hijacking PoC☆175Updated 2 years ago
- VMWare vRealize Network Insight Pre-Authenticated RCE (CVE-2023-20887)☆231Updated last year
- RCE exploit for CVE-2023-3519☆223Updated last year
- DCSync Attack from Outside using Impacket☆112Updated 2 years ago
- Windows LPE☆121Updated 10 months ago
- Foxit PDF Reader Remote Code Execution Exploit☆116Updated last year
- ErebusGate for Nim Bypass AV/EDR☆161Updated 2 years ago
- POC for CVE-2021-21974 VMWare ESXi RCE Exploit☆180Updated 3 years ago
- ☆155Updated 2 years ago