
PoC exploit for CVE-2022-26629: bypasses the lock screen on SoroushPlus+ Messenger 1.0.30 via improper access control. Includes an auto-exploit Python script for Windows and Linux.
Improper Access Control
Lock Screen Bypass
Improper handling of insufficient permissions and privileges allows an attacker to modify and overwrite the lock screen functionality causing it to be bypassed without any authorization.
BypassLockScreen.py to the your SoroushPlus+ installation directory,Python3 BypassLockScreen.py.