👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-31138
Github: https://github.com/ly1g3/Mailcow-CVE-2022-31138
Describe:
mailcow is a mailserver suite. Prior to mailcow-dockerized version 2022-06a, an extended privilege vulnerability can be exploited by manipulating the custom parameters regexmess, skipmess, regexflag, delete2foldersonly, delete2foldersbutnot, regextrans2, pipemess, or maxlinelengthcmd to execute arbitrary code. Users should update their mailcow instances with the `update.sh` script in the mailcow root directory to 2022-06a or newer to receive a patch for this issue. As a temporary workaround, the Syncjob ACL can be removed from all mailbox users, preventing changes to those settings.
Mumber: CVE-2022-31138
Github: https://github.com/ly1g3/Mailcow-CVE-2022-31138
Describe:
mailcow is a mailserver suite. Prior to mailcow-dockerized version 2022-06a, an extended privilege vulnerability can be exploited by manipulating the custom parameters regexmess, skipmess, regexflag, delete2foldersonly, delete2foldersbutnot, regextrans2, pipemess, or maxlinelengthcmd to execute arbitrary code. Users should update their mailcow instances with the `update.sh` script in the mailcow root directory to 2022-06a or newer to receive a patch for this issue. As a temporary workaround, the Syncjob ACL can be removed from all mailbox users, preventing changes to those settings.
GitHub
GitHub - ly1g3/Mailcow-CVE-2022-31138: Mailcow CVE-2022-31138
Mailcow CVE-2022-31138. Contribute to ly1g3/Mailcow-CVE-2022-31138 development by creating an account on GitHub.
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-31245
Github: https://github.com/ly1g3/Mailcow-CVE-2022-31245
Describe:
mailcow before 2022-05d allows a remote authenticated user to inject OS commands and escalate privileges to domain admin via the --debug option in conjunction with the ---PIPEMESS option in Sync Jobs.
Mumber: CVE-2022-31245
Github: https://github.com/ly1g3/Mailcow-CVE-2022-31245
Describe:
mailcow before 2022-05d allows a remote authenticated user to inject OS commands and escalate privileges to domain admin via the --debug option in conjunction with the ---PIPEMESS option in Sync Jobs.
GitHub
GitHub - ly1g3/Mailcow-CVE-2022-31245: CVE-2022-31245: RCE and domain admin privilege escalation for Mailcow
CVE-2022-31245: RCE and domain admin privilege escalation for Mailcow - ly1g3/Mailcow-CVE-2022-31245
👾KEYWORD SERVICE 🏷#exploit
Name: hacking-and-security-with-python-and-c-code-
Github: https://github.com/zedxpace/hacking-and-security-with-python-and-c-code-
Name: hacking-and-security-with-python-and-c-code-
Github: https://github.com/zedxpace/hacking-and-security-with-python-and-c-code-
GitHub
GitHub - zedxpace/hacking-and-security-with-python-and-c-code-: This page will contain all the links to the script and exploits…
This page will contain all the links to the script and exploits built from scratch in python as well as c code. - GitHub - zedxpace/hacking-and-security-with-python-and-c-code-: This page will cont...
👾KEYWORD SERVICE 🏷#exploit
Name: NVD-Exploit-List-Ja
Github: https://github.com/nomi-sec/NVD-Exploit-List-Ja
Name: NVD-Exploit-List-Ja
Github: https://github.com/nomi-sec/NVD-Exploit-List-Ja
GitHub
GitHub - nomi-sec/NVD-Exploit-List-Ja: 🔍NVD exploit & JVN(Japan Vulnerability Notes) easy description
🔍NVD exploit & JVN(Japan Vulnerability Notes) easy description - nomi-sec/NVD-Exploit-List-Ja
👾KEYWORD SERVICE 🏷#redteam
Name: awesome-hacker-search-engines
Github: https://github.com/edoardottt/awesome-hacker-search-engines
Name: awesome-hacker-search-engines
Github: https://github.com/edoardottt/awesome-hacker-search-engines
GitHub
GitHub - edoardottt/awesome-hacker-search-engines: A curated list of awesome search engines useful during Penetration testing,…
A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more - edoardottt/awesome-hacker-search-engines
👾KEYWORD SERVICE 🏷#exploit
Name: Defaced-Web-Pages
Github: https://github.com/scriptalad/Defaced-Web-Pages
Name: Defaced-Web-Pages
Github: https://github.com/scriptalad/Defaced-Web-Pages
GitHub
GitHub - scriptalad/Defaced-Web-Pages: EH Assignment Post Exploitation
EH Assignment Post Exploitation. Contribute to scriptalad/Defaced-Web-Pages development by creating an account on GitHub.
👾KEYWORD SERVICE 🏷#exploit
Name: Roblox-Speed-Hack
Github: https://github.com/alixjaffar/Roblox-Speed-Hack
Name: Roblox-Speed-Hack
Github: https://github.com/alixjaffar/Roblox-Speed-Hack
GitHub
GitHub - alixjaffar/Roblox-Speed-Hack: This is a exploit, which can boost your speed. To change your speed, you will have to change…
This is a exploit, which can boost your speed. To change your speed, you will have to change your .speed value. To actually get the speed boost you would need to press the letter "G&qu...
👾KEYWORD SERVICE 🏷#rce
Name: expressyouRcell
Github: https://github.com/LabTranslationalArchitectomics/expressyouRcell
Name: expressyouRcell
Github: https://github.com/LabTranslationalArchitectomics/expressyouRcell
GitHub
GitHub - LabTranslationalArchitectomics/expressyouRcell: expressyouRcell generates animations of pictographic representations of…
expressyouRcell generates animations of pictographic representations of cells, or pictograms, providing a convenient and intuitive method for visualizing and understanding time course variations in...
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-26809
Github: https://github.com/Ziggy78/CVE-2022-26809-RCE-POC
Describe:
Remote Procedure Call Runtime Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-24492, CVE-2022-24528.
Mumber: CVE-2022-26809
Github: https://github.com/Ziggy78/CVE-2022-26809-RCE-POC
Describe:
Remote Procedure Call Runtime Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-24492, CVE-2022-24528.
GitHub
GitHub - Ziggy78/CVE-2022-26809-RCE-POC
Contribute to Ziggy78/CVE-2022-26809-RCE-POC development by creating an account on GitHub.
👾KEYWORD SERVICE 🏷#exploit
Name: ioscrashhill_v1
Github: https://github.com/AliPunisher3/ioscrashhill_v1
Name: ioscrashhill_v1
Github: https://github.com/AliPunisher3/ioscrashhill_v1
GitHub
GitHub - AliPunisher3/ioscrashhill_v1: a webkit exploit that allows to crash safari
a webkit exploit that allows to crash safari. Contribute to AliPunisher3/ioscrashhill_v1 development by creating an account on GitHub.