p0dalirius / CVE-2022-45771-Pwndoc-LFI-to-RCE
Pwndoc local file inclusion to remote code execution of Node.js code on the server
☆46Updated 3 months ago
Alternatives and similar repositories for CVE-2022-45771-Pwndoc-LFI-to-RCE:
Users that are interested in CVE-2022-45771-Pwndoc-LFI-to-RCE are comparing it to the libraries listed below
- A repository with my code snippets for research/education purposes.☆50Updated last year
- A python script to force authentication using MS-RPRN RemoteFindFirstPrinterChangeNotificationEx function (opnum 65).☆21Updated 2 months ago
- Used to get NTLMv2 Hashes from SMB☆12Updated 6 months ago
- A script to automatically dump all URLs present in /server-status to a file locally.☆23Updated 2 months ago
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆56Updated last year
- A Proof-Of-Concept for the CVE-2023-43770 vulnerability.☆33Updated last year
- ☆47Updated 3 years ago
- Burp Suite Extension for inserting a magic byte into responder's request☆24Updated last year
- This map lists the essential techniques to bypass anti-virus and EDR☆15Updated last year
- Bypass AMSI By Dividing files into multiple smaller files☆45Updated 2 years ago
- Launches a limited shell using PowerShell Runspaces with an optional AMSI Bypass. Does not invoke Powershell.exe☆13Updated last year
- Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3☆22Updated 8 months ago
- Remote Template Injection Toolkit☆40Updated last year
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆32Updated 2 years ago
- Brief writeup of post exploitation methodologies.☆18Updated last year
- Situational Awareness script to identify how and where to run implants☆50Updated 5 months ago
- 「💥」CVE-2022-33891 - Apache Spark Command Injection☆26Updated 2 years ago
- Sliver extension to bypass UAC via cmstp written in rust☆27Updated 11 months ago
- ☆14Updated last year
- this script adds the ability to encode shellcode (.bin) in XOR,chacha20, AES. You can choose between 2 loaders (Myph / 221b)☆82Updated last year
- Phishing Framework for OTP codes☆19Updated this week
- ☆69Updated last month
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.☆44Updated 2 years ago
- quick and dirty proof-of-concept to hide shells in images☆49Updated 10 months ago
- Tool to perform GCP Domain Wide Delegation abuse and access Gmail and Drive data☆45Updated last year
- Python script for extracting and decrypting Group Policy Preferences passwords☆23Updated 3 years ago
- Tooling for the OffSec Experienced Pentester (OSEP) and OffSec Exploit Developer (OSED) course☆16Updated last year
- exfiltration/infiltration toolkit☆23Updated last year
- ☆18Updated last year
- ☆56Updated 5 months ago