truonghuuphuc / CVE-2024-39943-PocLinks
CVE-2024-39943 rejetto HFS (aka HTTP File Server) 3 before 0.52.10 on Linux, UNIX, and macOS allows OS command execution by remote authenticated users (if they have Upload permissions). This occurs because a shell is used to execute df (i.e., with execSync instead of spawnSync in child_process in Node.js).
☆19Updated 11 months ago
Alternatives and similar repositories for CVE-2024-39943-Poc
Users that are interested in CVE-2024-39943-Poc are comparing it to the libraries listed below
Sorting:
- ☆57Updated 11 months ago
- PAN-OS auth bypass + RCE☆46Updated 7 months ago
- Winsocket for Cobalt Strike.☆98Updated last year
- Cleo Unrestricted file upload and download PoC (CVE-2024-50623)☆23Updated 6 months ago
- PoC - Authenticated Remote Code Execution in VMware vCenter Server (Exploit)☆43Updated 11 months ago
- A tool for analyzing vulnerabilities in JWT tokens. Advanced JWT Vulnerability Scanner & Exploitation Toolkit☆36Updated 3 months ago
- CVE-2024-8190: Ivanti Cloud Service Appliance Command Injection☆17Updated 9 months ago
- ☆39Updated last year
- Explorer Persistence technique : Hijacking cscapi.dll order loading path and writing our malicious dll into C:\Windows\cscapi.dll , when …☆84Updated 2 years ago
- Abusing SSRF to deliver an authenticated command injection payload☆30Updated 3 months ago
- 针对多个框架的高度自定义的内存马一键打入工具 | A highly customized memory shell one-click injection tool for multiple frameworks☆47Updated last year
- ☆88Updated last year
- Exploit for the CVE-2024-5806☆45Updated last year
- Ivanti EPM AgentPortal RCE Vulnerability☆20Updated 9 months ago
- Proof-of-concept exploit for CVE-2024-25153.☆42Updated last year
- Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - Expect Script POC☆44Updated last year
- RCE PoC for Empire C2 framework <5.9.3☆28Updated last year
- Fuegoshell is a powershell oneliner generator for Windows remote shell re-using TCP 445☆53Updated last year
- ownCloud exploits for CVE-2023-49105☆36Updated last year
- ☆71Updated last year
- gRPC client for the Merlin Server☆22Updated 2 months ago
- Exploit for CVE-2024-20767 - Adobe ColdFusion☆34Updated 6 months ago
- CVE-2023-22527 - RCE (Remote Code Execution) Vulnerability In Confluence Data Center and Confluence Server PoC☆24Updated last year
- ☆19Updated last month
- Palo Alto Networks PAN-OS 身份验证绕过漏洞批量检测脚本(CVE-2025-0108)☆28Updated 2 months ago
- This tool, programmed in C#, allows for the fast discovery and exploitation of vulnerabilities in MSSQL servers☆54Updated last year
- CVE-2021-34473 Microsoft Exchange Server Remote Code Execution Vulnerability☆41Updated 2 years ago
- CVE-2025-0282 is a critical vulnerability found in Ivanti Connect Secure, allowing Remote Command Execution (RCE) through a buffer overfl…☆47Updated 5 months ago
- wmiexec2.0 is the same wmiexec that everyone knows and loves (debatable). This 2.0 version is obfuscated to avoid well known signatures …☆35Updated last week
- RCE through a race condition in Apache Tomcat☆55Updated 6 months ago