
Proof-of-Concept-Exploit für CVE-2022-41080 (OWASSRF), das Remote-Codeausführung über Microsoft Exchange Outlook Web Access ermöglicht und die ProxyNotShell-Gegenmaßnahmen umgeht.

https://www.crowdstrike.com/blog/owassrf-exploit-analysis-and-recommendations/