Ransomware Simulation |
This update adds a couple modules to simulate a ransomware attack in a previously exploited host. "Ransomware Simulation" to run the simulated ransomware attack. "Files Decryption after Ransomware Simulation" to decrypt previously encrypted files. |
May 20, 2022 |
NOCVE-9999-175115 |
|
Post Exploitation |
Impact |
F5 BIG-IP iControl REST Authentication Bypass Vulnerability Remote Code Execution Exploit |
An athentication bypass present in iControl REST of F5 BIG-IP allows unauthenticated remote attackers to execute OS commands as root. |
May 10, 2022 |
CVE-2022-1388 |
Linux |
Exploits / OS Command Injection / Known Vulnerabilities |
Impact |
VMware Workspace ONE Access Server-side Template Injection Remote Code Execution Exploit |
The customError.ftl filter in VMware Workspace ONE Access allows remote attackers to achieve remote code execution via server-side template injection. |
May 10, 2022 |
CVE-2022-22954 |
Linux |
Exploits / OS Command Injection / Known Vulnerabilities |
Impact |
Spring Framework Spring4Shell Remote Code Execution Exploit |
An unsafe data binding used to populate an object from request parameters (either query parameters or form data) to set a Tomcat specific ClassLoader in Spring MVC and Spring WebFlux applications allows unauthenticated attackers to upload and execute a JSP file in the Tomcat virtual file system webapps directory. |
May 4, 2022 |
CVE-2022-22965 |
Linux |
Exploits / OS Command Injection / Known Vulnerabilities |
Impact |
Oracle Access Manager OpenssoEngineController Deserialization Vulnerability Remote Code Execution Exploit |
A deserialization vulnerability present in the OpenssoEngineController component of Oracle Access Manager allows a unauthenticated attacker with network access via HTTP to execute system commands. |
April 25, 2022 |
CVE-2021-35587 |
Windows, Linux |
Exploits / Remote Code Execution |
Impact |
Linux Kernel watch_queue Local Privilege Escalation Exploit |
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel's watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system. |
April 19, 2022 |
CVE-2022-0995 |
Linux |
Exploits / Local |
Impact |
Apache APISIX batch-requests Remote Code Execution Exploit (CVE-2022-24112) |
This module exploits a vulnerability in Apache APISIX batch requests plugin to perform a remote code execution. |
April 7, 2022 |
CVE-2022-24112 |
Linux |
Exploits / Remote Code Execution |
Impact |
Veeam Backup and Replication ExecuteUploadManagerPerformUpload Remote Code Execution Exploit |
An authentication bypass in Veeam.Backup.ServiceLib.CForeignInvokerNegotiateAuthenticator.Authenticate and a file upload present in ExecuteUploadManagerPerformUpload allows an unauthenticated attacker to execute system commands with the privileges of the "IIS Worker Process" process (NT AUTHORITY\\NETWORK SERVICE) |
March 23, 2022 |
CVE-2022-26501 |
Windows |
Exploits / Remote Code Execution |
Impact |
Microsoft Windows HTTP Stack DoS |
This bug could allow an attacker to gain code execution on an affected system by sending specially crafted packets to a system utilizing the HTTP Protocol Stack (http.sys) to process packets. No user interaction, no privileges required, and an elevated service add up to a wormable bug. And while this is definitely more server-centric, remember that Windows clients can also run http.sys, so all affected versions are affected by this bug. Test and deploy this patch quickly. |
March 18, 2022 |
CVE-2022-21907 |
Windows |
Denial of Service / Remote |
Impact |
Apache James Log4shell Remote Code Execution Vulnerability Exploit |
Description: JNDI features used in configuration, log messages, and parameters present in Apache Log4j2 do not protect against attacker controlled LDAP and other JNDI related endpoints. This library, used by Apache James, allows unauthenticated attackers to execute system commands. |
March 17, 2022 |
CVE-2021-44228 |
Linux, Windows |
Exploits / Remote |
Impact |
Microsoft Windows Administrator UAC Elevation Bypass Update v2 |
This update improves the module to bypass UAC by adding support for Windows 11. |
March 15, 2022 |
NOCVE-9999-64489 |
Windows |
Exploits / Local |
Impact |
Linux Kernel Dirty Pipe Local Privilege Escalation Exploit |
Improper initialization of the flags member of the pipe buffer structure in copy_page_to_iter_pipe and push_pipe functions in the Linux kernel, could allow an unprivileged local user to write to pages in the page cache backed by read-only files and escalate privileges on the system. |
March 14, 2022 |
CVE-2022-0847 |
Linux |
Exploits / Local |
Impact |
Raspberry Pi Default Credentials Exploit Update |
Raspberry Pi OS through 5.10 has the raspberry default password for the pi account. If not changed, attackers can gain administrator privileges.
This update improves Python 3 support. |
March 4, 2022 |
CVE-2021-38759 |
|
Exploits / Remote |
Impact |
Microsoft Windows Print Spooler Elevation of Privilege Vulnerability Exploit (CVE-2022-21999) |
An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system. An attacker who successfully exploited this vulnerability could run arbitrary code with elevated system privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. |
February 25, 2022 |
CVE-2022-21999 |
Windows |
Exploits / Local |
Impact |
VMware Horizon Log4shell Remote Code Execution Vulnerability Exploit |
JNDI features used in configuration, log messages, and parameters present in Apache Log4j2 do not protect against attacker controlled LDAP and other JNDI related endpoints. This library, used by VMware Horizon Connection Server, allows unauthenticated attackers to execute system commands. |
February 21, 2022 |
CVE-2021-44228 |
Windows |
Exploits / Remote Code Execution |
Impact |
.NET Assembly Execution |
This update adds the capability to Windows agents of executing .net assemblies in the target's memory.
Also, a specific module to trigger SharpHound (BloodHound data Collector) is included in it. |
February 18, 2022 |
|
|
Post Exploitation |
Impact |
VMware vCenter Server Log4shell Remote Code Execution Vulnerability Exploit Update |
This update adds SSO domain name detection. |
February 17, 2022 |
CVE-2021-44228 |
Windows, Linux |
Exploits / Remote Code Execution |
Impact |
Win32k Window Object Type Confusion Local Privilege Escalation |
The vulnerability is a win32k window object type confusion leading to an OOB (out-of-bounds) write which can be used to create arbitrary memory read and write capabilities within the Windows kernel to achieve elevated privileges. |
February 9, 2022 |
CVE-2022-21882 |
Windows |
Exploits / Local |
Impact |
PolicyKit pkexec Elevation of Privilege Vulnerability Exploit |
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it'll induce pkexec to execute arbitrary code. |
February 4, 2022 |
CVE-2021-4034 |
Linux |
Exploits / Local |
Impact |
NTFS Set Short Name Checker |
This module allow to set a short name 8.3 of a file when you don't have write privileges to the directory where the file is located.The vulnerability exists due to NtfsSetShortNameInfo does not properly impose security restrictions in NTFS Set Short Name, which leads to security restrictions bypass and privilege escalation.
|
January 28, 2022 |
CVE-2021-43240 |
Windows |
Exploits / Tools |
Impact |
Raspberry Pi Default Credentials Exploit |
Raspberry Pi OS through 5.10 has the raspberry default password for the pi account. If not changed, attackers can gain administrator privileges. |
January 6, 2022 |
CVE-2021-38759 |
|
Exploits / Remote |
Impact |
Microsoft Windows NTFS Elevation of Privilege Vulnerability Exploit |
An elevation of privilege vulnerability exists in Windows when the NTFS component fails to properly handle objects in memory.
An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode, then install programs, view,
change, delete data or create new accounts with full user rights.
|
December 27, 2021 |
CVE-2021-31956 |
Windows |
Exploits / Local |
Impact |
Grafana getPluginAssets Path Traversal Local File Disclosure Exploit |
A path traversal vulnerability in Grafana may allow an unauthenticated attacker to download system files through specially crafted HTTP resource requests. |
December 21, 2021 |
CVE-2021-43798 |
Windows, Linux |
Exploits / Remote File Disclosure |
Impact |
VMware vCenter Server Log4shell Remote Code Execution Vulnerability Exploit |
JNDI features used in configuration, log messages, and parameters present in Apache Log4j2 do not protect against attacker controlled LDAP and other JNDI related endpoints. This library, used by VMware vCenter Server, allows unauthenticated attackers to execute system commands. |
December 13, 2021 |
CVE-2021-44228 |
Windows, Linux |
Exploits / Remote Code Execution |
Impact |
VMware vRealize Operations Manager Log4shell Remote Code Execution Vulnerability Exploit |
JNDI features used in configuration, log messages, and parameters present in Apache Log4j2 do not protect against attacker controlled LDAP and other JNDI related endpoints. This library, used by VMware vRealize Operations Manager, allows unauthenticated attackers to execute system commands. |
December 13, 2021 |
CVE-2021-44228 |
Linux |
Exploits / Remote Code Execution |
Impact |