Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2023-21554-PoC — Python proof of concept for CVE-2023-21554 (QueueJumper) in Microsoft MSMQ, constructing SRMP messages over TCP/1801 to verify the integer-overflow condition. | Kitploit
Tools/GitHubGitHub/theartist54/cve-2023-21554-poc
Vulnerability AnalysisExploitationNetwork SecurityPenetration TestingPapers & Research
GitHubtheartist54/cve-2023-21554-poc

CVE-2023-21554-PoC

Python proof of concept for CVE-2023-21554 (QueueJumper) in Microsoft MSMQ, constructing SRMP messages over TCP/1801 to verify the integer-overflow condition.

View Repository
1520 days agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2023-21554 — QueueJumper PoC

Proof of concept for CVE-2023-21554, also known as QueueJumper, affecting Microsoft Message Queuing (MSMQ).

The PoC implements the MSMQ/SRMP protocol interaction associated with the vulnerability and can be used to investigate the behavior of an MSMQ service over TCP/1801.

⚠️ For authorized security research only.

Run this PoC only against systems that you own or have explicit permission to test.


Overview

CVE-2023-21554 is a vulnerability affecting Microsoft Message Queuing (MSMQ).

This PoC constructs the relevant MSMQ/SRMP message structures and sends both a normal message and a malformed message containing the integer-overflow condition associated with the vulnerability.

The implementation checks the response for the MSMQ LIOR signature and reports the observed behavior.

The target is supplied dynamically from the command line rather than being hard-coded into the program.


Features

  • Python 3 implementation
  • Dynamic target IP/hostname
  • MSMQ TCP/1801 communication
  • SRMP message construction
  • Normal and overflow variants
  • LIOR response detection
  • Vulnerability verification mode
  • No external Python packages required

Requirements

Operating system

The PoC can be run from Linux, including Kali Linux.

Python

Python 3 is required.

Check your version:

python3 --version

Download
Clone the repository
git clone https://github.com/YOUR_USERNAME/CVE-2023-21554-PoC.git

Enter the repository:

cd CVE-2023-21554-PoC

Make the script executable:

chmod +x poc.py
Usage

Display the available options:

python3 poc.py --help
Download Tool