CVE HUB 👾
789 subscribers
19.3K links
Github Red team resource push
Github 红队资源推送
Cve/Rce/Exploit/Redteam/漏洞利用/红队

Channel push 24/7 (real time)
频道全天候推送(实时)
Download Telegram
👾KEYWORD SERVICE 🏷#exploit
Name: IMAGE-RAT
Github: https://github.com/pro-rat/IMAGE-RAT
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-20138
Github: https://github.com/nidhi7598/frameworks_base_AOSP_10_r33_CVE-2022-20138
Describe:
In ACTION_MANAGED_PROFILE_PROVISIONED of DevicePolicyManagerService.java, there is a possible way for unprivileged app to send MANAGED_PROFILE_PROVISIONED intent due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-210469972
👾KEYWORD SERVICE 🏷#rce
Name: rces-final
Github: https://github.com/juliasimpson97/rces-final