
CVE-2023-23397
Python script to create a message with the vulenrability properties set

Python script to create a message with the vulenrability properties set


Fork of laravel/framework 10.50.2 with CVE-2026-48019 (CRLF injection in default email rule) backported into ValidatesAttributes::validateEmail.…

Identify public-facing Microsoft Exchange servers and determine their software versions

CVE-2023-23397漏洞的简单PoC,有效载荷通过电子邮件发送。

Cisco Email Security Appliance: Email to zero-click RCE as root - Remote Code Execution/Memory Corruption/ROP-chain

Zimbra CVE-2024-45519 real fix - Official patch is incomplete

Horde IMP (through 6.2.27) vulnerability – obfuscation via HTML encoding – XSS payload

CVE-2026-28289

Zimbra Collaboration Suite Username Enumeration

These detection scripts are property of the SECPlayground Platform. Two safe detection scripts. Neither drives the close_notify-mid-BDAT trigger, so…

Insecure Direct Object Reference (IDOR vulnerability) in SOGo Webmail Allows a user to send emails on behalf of another user.

PowerShell script to detect and remediate CVE-2023-23397 privilege escalation vulnerability in Microsoft Outlook and Exchange environments.

CVE-2024-21413 Açığını Kullanarak Giriş Bilgilerini Alma



CRLF Email Header Injection in Plunk via raw MIME construction — CVSS 8.5

We are expected to investigate a critical alert reporting a Windows OLE zero-click RCE exploitation (CVE-2025-21298) delivered via a malicious RTF…