Lucene search

K
githubexploitDF35E634-51B1-5A30-AB0B-8518E3754609
HistoryDec 22, 2022 - 9:35 a.m.

Exploit for Deserialization of Untrusted Data in Microsoft

2022-12-2209:35:26
226
deserialization
untrusted data
microsoft
proxynotshell
owassrf
valid credentials
command execution
powershell
poc script
tabshell vulnerability
privilege escalation
sandbox
hotfix bypass
exchange server
october 2022 patch
setup
running
target
username
password
command file

8 High

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

8.3 High

AI Score

Confidence

High

0.216 Low

EPSS

Percentile

96.5%

CVE-2022-41082-POC

PoC for the CVE-2022-41082 NotProxyShell OW…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

8 High

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

8.3 High

AI Score

Confidence

High

0.216 Low

EPSS

Percentile

96.5%