jakabakos / Apache-OFBiz-Authentication-BypassLinks
This repo is a PoC with to exploit CVE-2023-51467 and CVE-2023-49070 preauth RCE vulnerabilities found in Apache OFBiz.
☆74Updated last year
Alternatives and similar repositories for Apache-OFBiz-Authentication-Bypass
Users that are interested in Apache-OFBiz-Authentication-Bypass are comparing it to the libraries listed below
Sorting:
- SSTI Payload Generator☆91Updated 2 years ago
- A comprehensive guide/material for anyone looking to get into infosec or take the OSCP exam☆44Updated 6 years ago
- Reverse Shell POC exploit for Dolibarr <= 17.0.0 (CVE-2023-30253), PHP Code Injection☆39Updated last year
- Aspx reverse shell☆112Updated 5 years ago
- GameOver(lay) Ubuntu Privilege Escalation☆128Updated last year
- Helper script for spawning a minimal Ubuntu 16.04 container ready for building kernel exploits (~4.x)☆145Updated last year
- Collection of useful pre-compiled .NET binaries or other executables for penetration testing Windows Active Directory environments☆174Updated 5 months ago
- POC for CVE-2021-41091☆65Updated 2 years ago
- This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220☆1Updated last year
- Joomla! < 4.2.8 - Unauthenticated information disclosure☆87Updated last year
- Root shell PoC for CVE-2021-3156☆69Updated 4 years ago
- ImageMagick LFI PoC [CVE-2022-44268]☆52Updated last year
- Ad hoc collection of Red Teaming & Active Directory tooling.☆210Updated 2 years ago
- Joomla login bruteforce☆75Updated last year
- Herramientas y utilidades de pentesting, ethical hacking y seguridad ofensiva.☆39Updated 2 months ago
- Kerberoast with ACL abuse capabilities☆527Updated 7 months ago
- This is a exploit of CVE-2022-46169 to cacti 1.2.22. This exploit allows through an RCE to obtain a reverse shell on your computer.☆41Updated last year
- A wordlist repository with human-curated and reviewed content.☆113Updated last year
- Ghostscript command injection vulnerability PoC (CVE-2023-36664)☆128Updated last year
- ☆35Updated last year
- ☆100Updated 2 years ago
- Local File Inclusion discovery and exploitation tool☆319Updated 7 months ago
- Virtualized WiFi pentesting laboratory without the need for physical WiFi cards, using mac80211_hwsim. Docker version of WiFiChallenge La…☆279Updated 3 months ago
- A cheatsheet for NetExec☆137Updated last month
- Script to retrieve the master password of a keepass database <= 2.53.1☆105Updated last year
- Notes compiled for the OSCP exam.☆155Updated 3 years ago
- Bruteforce Keepass databases (KDBX 4.x format)☆108Updated last year
- ☆219Updated 5 years ago
- Study guide and command sheet for Offensive Security PEN-210 course (Offensive Security Wireless Pentester - OSWP)☆80Updated last year
- Python exploit code for CVE-2021-4034 (pwnkit)☆169Updated 3 years ago