🤬
Enable build support by adding .buildspec.yml
pypsrp Loading last commit info...
README.md
TabShell_CVE-2022-41076_poc.ps1
cmd
poc.py
requirements.txt
README.md

CVE-2022-41076-PoC 👈

CVE-2022-41082-PoC 👇

PoC for the CVE-2022-41082 NotProxyShell OWASSRF Vulnerability Effecting Microsoft Exchange Servers

This is Post-Auth RCE for ProxyNotShell OWASSRF, valid cardentials are needed for command execution.

Affected versions

Exchange 2013,16,19 till 08.11.2022 patch This exploit bypasses Microsoft Hotfix from October 2022

Setup

pip install -r requirements.txt

Running

usage: python poc.py [-H Target] [-u username] [-p "password"] [-c cmd_file]
python poc.py -H https://192.168.0.1 -u user2 -p "123QWEasd!@#" -c cmd_file'
Please wait...
Page is in error, reload to recover