
CVE-2022-40684
A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager

A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager

Demos for the Blackhat USA 2022 talk "Taking Kerberos to the Next Level"


F5 BIG-IP RCE exploitation (CVE-2022-1388)

PoC for CVE-2022-40684 - Authentication bypass lead to Full device takeover (Read-only)

CVE-2022-1388 F5 BIG-IP iControl REST Auth Bypass RCE

CVE-2022-46169 Cacti remote_agent.php Unauthenticated Command Injection.

CVE-2022-39227 : Proof of Concept

PoC + vulnerability details for CVE-2022-25262 / JetBrains Hub single-click SAML response takeover

This is poc of CVE-2022-46169 authentication bypass and remote code execution

一键枚举所有用户名以及写入SSH公钥

Utilities for exploiting vulnerability CVE-2022-40684 (FortiOS / FortiProxy / FortiSwitchManager - Authentication bypass on administrative interface).


A proof of concept for CVE-2022-30600

A simple tool to enumerate users in gitlab

Exploit for CVE-2022-22845 - Unauthenticated Admin Takeover On QXIP SIPCAPTURE Homer-App up to 1.4.27

Fortinet Critical Authentication Bypass Vulnerability (CVE-2022-40684) [ Mass Exploit ]

Cookie Information | Free GDPR Consent Solution <= 2.0.22 - Authenticated (Subscriber+) Arbitrary Options Update