m3m0o / metabase-pre-auth-rce-poc
This is a script written in Python that allows the exploitation of the Metabase's software security flaw described in CVE-2023-38646.
☆28Updated 9 months ago
Alternatives and similar repositories for metabase-pre-auth-rce-poc:
Users that are interested in metabase-pre-auth-rce-poc are comparing it to the libraries listed below
- Joomla! < 4.2.8 - Unauthenticated information disclosure☆83Updated last year
- Openfire Console Authentication Bypass Vulnerability with RCE plugin☆51Updated last year
- PoC for CVE-2022-46169 - Unauthenticated RCE on Cacti <= 1.2.22☆30Updated last year
- GameOver(lay) Ubuntu Privilege Escalation☆124Updated last year
- A webshell plugin and interactive shell for pentesting a Joomla website.☆51Updated 2 years ago
- This repo is a PoC with to exploit CVE-2023-51467 and CVE-2023-49070 preauth RCE vulnerabilities found in Apache OFBiz.☆73Updated last year
- CVE-2023-2255 Libre Office☆57Updated last year
- Reverse Shell Exploit for Searchor <= 2.4.2 (2.4.0)☆15Updated last year
- Ghostscript command injection vulnerability PoC (CVE-2023-36664)☆121Updated last year
- CVE-2024-41570: Havoc C2 0.7 Teamserver SSRF exploit☆73Updated 7 months ago
- ☆41Updated 6 months ago
- Joomla login bruteforce☆65Updated 9 months ago
- POC for CVE-2021-41091☆65Updated last year
- Script to retrieve the master password of a keepass database <= 2.53.1☆99Updated last year
- CVE-2023-0297: The Story of Finding Pre-auth RCE in pyLoad☆27Updated 2 years ago
- his repository contains an automated Proof of Concept (PoC) script for exploiting **CVE-2025-24813**, a Remote Code Execution (RCE) vulne…☆109Updated last month
- A PoC exploit for CVE-2024-25600 - WordPress Bricks Builder Remote Code Execution (RCE)☆38Updated last year
- Metabase Pre-auth RCE☆12Updated last year
- KeePass 2.X dumper (CVE-2023-32784)☆17Updated last year
- SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions…☆64Updated 6 months ago
- Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (CVE-2024-6387)☆96Updated 8 months ago
- CVE-2022-25765 pdfkit <0.8.6 command injection.☆13Updated 2 years ago
- ☆32Updated last year
- A proof of concept for CVE-2023–1326 in apport-cli 2.26.0☆20Updated last year
- A webshell plugin and interactive shell for pentesting a WordPress website.☆85Updated last year
- Reverse Shell POC exploit for Dolibarr <= 17.0.0 (CVE-2023-30253), PHP Code Injection☆39Updated 10 months ago
- Obtain the passphrase of a private key (id_rsa), this tool uses the ssh-keygen binary to perform a brute force attack until a successful …☆72Updated last month
- Vulnerabilities Exploitation On Ubuntu 22.04☆40Updated last year
- Nibbleblog 4.0.3 - Arbitrary File Upload (CVE-2015-6967)☆13Updated 4 years ago
- Achieving a Reverse Shell Exploit for Apache ActiveMQ (CVE_2023-46604)☆114Updated last year