Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
ProxyNotShell-PoC — Exploits Microsoft Exchange ProxyNotShell vulnerabilities (CVE-2022-41040 and CVE-2022-41082) with an authenticated PoC script that executes commands on vulnerable servers. | Kitploit
Tools/GitHubGitHub/testanull/proxynotshell-poc
ExploitationWeb Application ExploitationPenetration Testing
GitHubtestanull/proxynotshell-poc

ProxyNotShell-PoC

Exploits Microsoft Exchange ProxyNotShell vulnerabilities (CVE-2022-41040 and CVE-2022-41082) with an authenticated PoC script that executes commands on vulnerable servers.

View Repository
4128453 years agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Working PoC for CVE-2022-41040 and CVE-2022-41082 (A.K.A ProxyNotShell)

Requirement:

  • pip install requests_ntlm2 requests

Usage:

python poc_aug3.py <host> <username> <password> <command>

Creds:

  • ProxyShell PoC script from: https://blog.viettelcybersecurity.com/pwn2own-2021-microsoft-exchange-exploit-chain/

  • Gtsc's blog post

  • https://www.zerodayinitiative.com/blog/2022/11/14/control-your-types-or-get-pwned-remote-code-execution-in-exchange-powershell-backend

Download Tool