Network Penetration Testing
1.03K subscribers
40 photos
3 videos
12 files
269 links
[ Network Penetration Testing & Cloud ]

Any misuse of this info will not be the responsibility of the author, educational purposes only.


@NetPentester
Download Telegram
This media is not supported in your browser
VIEW IN TELEGRAM
Exchange TabShell RCE PoC (CVE-2022-41076)

+ Microsoft #Exchange: OWASSRF + TabShell (CVE-2022-41076)

The TabShell vulnerability its a form of #Privilege Escalation which allows breaking out of the restricted #Powershell #Sandbox after you have successfully gained access through OWASSRF.

https://gist.github.com/testanull/518871a2e2057caa2bc9c6ae6634103e

Details:
https://blog.viettelcybersecurity.com/tabshell-owassrf/

#Exchange
#ssrf
#tabshell
#poc
@NetPentesters