Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2021-26855 — CVE-2021-26855 exp | Kitploit
Tools/GitHubGitHub/hackerxj007/cve-2021-26855
ReconnaissanceVulnerability AnalysisExploitationWeb Application ExploitationInformation GatheringPenetration Testing
GitHubhackerxj007/cve-2021-26855

CVE-2021-26855

CVE-2021-26855 exp

View Repository
56955 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2021-26855

CVE-2021-26855 SSRF simple exploitation golang practice

Affected Versions

  • Exchange Server 2013 earlier than CU23
  • Exchange Server 2016 earlier than CU18
  • Exchange Server 2019 earlier than CU7

Exploitation Conditions

This vulnerability is different from previous Exchange vulnerabilities. It does not require an authenticated user identity and can access internal user resources without authorization. Combined with CVE-2021-27065, it can achieve remote command execution.

Prerequisites for triggering the vulnerability

  • The target server is vulnerable.
  • The target Exchange server must be a load-balanced server, i.e., using two or more servers simultaneously.
  • Target mailbox address. Note: the address must be a domain email address, not a mailbox address; there is a difference between the two.
  • The attacker must also identify the Fully Qualified Domain Name (FQDN) of the internal Exchange server.

Among the above four items, the FQDN can be captured via NTLM Type2 messages; the email address can be directly enumerated.

Usage

Exploiting this vulnerability is more convenient using scripting languages such as Ruby or Python. Writing it in Golang is mainly for learning Golang, so this tool is only a half-finished product. I will update it when I have time.

This tool supports vulnerability detection and user enumeration. It can also read simple email IDs and subjects (essentially by modifying XML content). For further exploitation, refer to 8581, both involve submitting XML.

Usage:

go run CVE-2021-21978.go -h <target ip>
  -h string        Required, target IP or domain
  -U string        Optional, user list to enumerate
  -d               Optional, download emails
  -l               Optional, list emails
  -n string        Optional, specify FQDN (if needed)
  -t string        Optional, request delay (default "1")
  -u string        Optional, specify target (default "administrator")

Updated download functionality

Download Tool