m3m0o / metabase-pre-auth-rce-poc
This is a script written in Python that allows the exploitation of the Metabase's software security flaw described in CVE-2023-38646.
☆26Updated 4 months ago
Related projects ⓘ
Alternatives and complementary repositories for metabase-pre-auth-rce-poc
- Joomla! < 4.2.8 - Unauthenticated information disclosure☆79Updated 10 months ago
- CVE-2023-2255 Libre Office☆56Updated last year
- GameOver(lay) Ubuntu Privilege Escalation☆118Updated last year
- Reverse Shell POC exploit for Dolibarr <= 17.0.0 (CVE-2023-30253), PHP Code Injection☆36Updated 5 months ago
- Reverse Shell Exploit for Searchor <= 2.4.2 (2.4.0)☆14Updated last year
- Script to retrieve the master password of a keepass database <= 2.53.1☆93Updated 7 months ago
- This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220☆22Updated 3 months ago
- Unauthenticated RCE in ZoneMinder Snapshots - Poc Exploit☆18Updated 6 months ago
- Unauthenticated Remote Code Execution – Bricks <= 1.9.6☆148Updated 9 months ago
- Evade the boys in blue and acquire a reverse shell using powercat v2.0☆49Updated last year
- This repo is a PoC with to exploit CVE-2023-51467 and CVE-2023-49070 preauth RCE vulnerabilities found in Apache OFBiz.☆73Updated 8 months ago
- POC for CVE-2021-41091☆65Updated last year
- Openfire Console Authentication Bypass Vulnerability with RCE plugin☆46Updated 8 months ago
- Interact with Hackthebox using your terminal - Be faster and more competitive !☆87Updated 7 months ago
- Demonized Shell is an Advanced Tool for persistence in linux.☆305Updated 2 months ago
- ☆33Updated last month
- KeePass 2.X dumper (CVE-2023-32784)☆14Updated last year
- Get private key passphrase (id_rsa).☆63Updated 4 months ago
- Collection of useful pre-compiled .NET binaries or other executables for penetration testing Windows Active Directory environments☆92Updated 2 months ago
- A proof of concept for CVE-2023–1326 in apport-cli 2.26.0☆17Updated 11 months ago
- Reverse shell that can bypass windows defender detection☆155Updated 9 months ago
- ☆28Updated last year
- SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions…☆64Updated last month
- Ghostscript command injection vulnerability PoC (CVE-2023-36664)☆115Updated last year
- A webshell plugin and interactive shell for pentesting a WordPress website.☆77Updated last year
- JetBrains TeamCity Authentication Bypass CVE-2023-42793 Exploit☆45Updated 6 months ago
- PoC for CVE-2022-46169 - Unauthenticated RCE on Cacti <= 1.2.22☆29Updated last year
- ☆59Updated 11 months ago
- Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - Expect Script POC☆154Updated 9 months ago
- Malicious Macro Generator for LibreOffice/OpenOffice☆17Updated last year