Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2023-36427 — Report and exploit of CVE-2023-36427 | Kitploit
Tools/GitHubGitHub/tandasat/cve-2023-36427
Memory ForensicsVulnerability AnalysisExploitationPenetration TestingHardware SecurityBinary Exploitation
GitHubtandasat/cve-2023-36427

CVE-2023-36427

Report and exploit of CVE-2023-36427

View Repository
901642 years agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
Website

CVE-2023-36427

This repo contains the report and exploit of CVE-2023-36427, memory corruption at arbitrary physical addresses from the root partition on Windows. The details and exploit of the vulnerability are in the report sent to Microsoft.

Demo

Timeline

  • July 2 - Sent a report to a friend of mine at Microsoft.
  • July 11 - Received a reply from a member of the team responsible for the issue.
  • August 8 - Received a proposal to make the disclosure date November 14.
  • August 9 - Agreed with the proposal.
  • November 14 - The fix was released.
  • November 15 - Disclosed the issue. Notified that the issue was eligible for a 2000 USD bounty award.

Thanks MSRC for transparent communication, the engineering team for fixing this on time, and Andrea (@aall86) for helping me share the issue and connecting with the right folks within Microsoft.

Download Tool