j00sean / CVE-2022-44666Links
Write-up for another forgotten Windows vulnerability (0day): Microsoft Windows Contacts (VCF/Contact/LDAP) syslink control href attribute escape, which was not fully fixed as CVE-2022-44666 in the patches released on December, 2022.
☆154Updated 2 years ago
Alternatives and similar repositories for CVE-2022-44666
Users that are interested in CVE-2022-44666 are comparing it to the libraries listed below
Sorting:
- DHCP Server Remote Code Execution impact: 2008 R2 SP1 до Server 2019☆69Updated 2 years ago
- Bypass Detection By Randomising ROR13 API Hashes☆140Updated 3 years ago
- Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE☆206Updated last year
- ☆58Updated 7 months ago
- ☆163Updated 2 years ago
- Dumping LSASS with a duplicated handle from custom LSA plugin☆201Updated 3 years ago
- ☆131Updated last year
- This repository contains a proof-of-concept exploit written in C++ that demonstrates the exploitation of a vulnerability affecting the Wi…☆77Updated last year
- ☆136Updated 2 months ago
- ☆241Updated last year
- PoC for CVE-2022-26809, analisys and considerations are shown in the github.io.☆107Updated 3 years ago
- lazy way to create CVE-2023-38831 winrar file for testing☆92Updated last year
- ☆133Updated 2 years ago
- Positional Independent Code to extract clear text password from mstsc.exe using API Hooking via HWBP.☆241Updated last year
- ErebusGate for Nim Bypass AV/EDR☆161Updated 2 years ago
- An all-in-one Cobalt Strike BOF to patch, check and revert AMSI and ETW for x64 process. Both syscalls and dynamic resolve versions are a…☆135Updated 2 years ago
- PoC for the CVE-2022-41080 , CVE-2022-41082 and CVE-2022-41076 Vulnerabilities Affecting Microsoft Exchange Servers☆93Updated 2 years ago
- Neton is a tool for getting information from Internet connected sandboxes☆95Updated 2 years ago
- Windows LPE☆127Updated last year
- Full disclosures for CVE ids, proofs of concept, exploits, 0day bugs and so on.☆112Updated 2 years ago
- AV/EDR evasion via direct system calls.☆108Updated last year
- CobaltStrike beacon in rust☆189Updated 10 months ago
- Winsocket for Cobalt Strike.☆98Updated last year
- Exploit for CVE-2023-36802 targeting MSKSSRV.SYS driver☆112Updated last year
- The vulnerability allowed a low-privileged user to escalate privileges to domain administrator in a default Active Directory environment …☆44Updated 3 years ago
- RCE exploit for CVE-2023-3519☆224Updated last year
- CVE-2023-21554 Windows MessageQueuing PoC,分析见 https://www.zoemurmure.top/posts/cve_2023_21554/☆57Updated 2 years ago
- Little program written in C# to bypass EDR hooks and dump the content of the lsass process☆61Updated 3 years ago
- Abuse Impersonate Privilege from Service to SYSTEM like other potatoes do☆372Updated 2 years ago
- Exploit for CVE-2023-27532 against Veeam Backup & Replication☆111Updated 2 years ago