Microsoft Windows Active Directory是美国微软(Microsoft)公司的一个负责架构中大型网络环境的集中式目录管理服务。存储有关网络上对象的信息,并使管理员和用户可以轻松查找和使用这些信息。 Microsoft Windows Active Directory存在权限许可和访问控制问题漏洞。以下产品和版本受到影响:Windows Server 2019,Windows Server 2019 (Server Core installation),Windows Serve
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter. | https://github.com/cube0x0/noPac | POC Details |
| 2 | .Net Assembly loader for the [CVE-2021-42287 - CVE-2021-42278] Scanner & Exploit noPac | https://github.com/ricardojba/Invoke-noPac | POC Details |
| 3 | NoPacScan is a CVE-2021-42287/CVE-2021-42278 Scanner,it scan for more domain controllers than other script | https://github.com/knightswd/NoPacScan | POC Details |
| 4 | CVE-2021-42287/CVE-2021-42278 exploits in powershell | https://github.com/XiaoliChan/Invoke-sAMSpoofing | POC Details |
| 5 | CVE-2021-42287/CVE-2021-42278 Exploiter | https://github.com/TryA9ain/noPac | POC Details |
| 6 | CVE-2021-42287/CVE-2021-42278/OTHER Scanner & Exploiter. | https://github.com/DanielFEXKEX/CVE-Scanner | POC Details |
| 7 | CVE-2021-42287/CVE-2021-42278/OTHER Scanner & Exploiter. | https://github.com/Chrisync/CVE-Scanner | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-26443 | 9.0 CRITICAL | Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability |
| CVE-2021-38666 | 8.8 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2021-42321 | 8.8 HIGH | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2021-42316 | 8.8 HIGH | Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability |
| CVE-2021-42283 | 8.8 HIGH | NTFS Elevation of Privilege Vulnerability |
| CVE-2021-42275 | 8.8 HIGH | Microsoft COM for Windows Remote Code Execution Vulnerability |
| CVE-2021-42322 | 7.8 HIGH | Visual Studio Code Elevation of Privilege Vulnerability |
| CVE-2021-43208 | 7.8 HIGH | 3D Viewer Remote Code Execution Vulnerability |
| CVE-2021-42298 | 7.8 HIGH | Microsoft Defender Remote Code Execution Vulnerability |
| CVE-2021-42296 | 7.8 HIGH | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2021-42286 | 7.8 HIGH | Windows Core Shell SI Host Extension Framework for Composable Shell Elevation of Privilege |
| CVE-2021-42285 | 7.8 HIGH | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2021-42276 | 7.8 HIGH | Microsoft Windows Media Foundation Remote Code Execution Vulnerability |
| CVE-2021-41378 | 7.8 HIGH | Windows NTFS Remote Code Execution Vulnerability |
| CVE-2021-41377 | 7.8 HIGH | Windows Fast FAT File System Driver Elevation of Privilege Vulnerability |
| CVE-2021-41370 | 7.8 HIGH | NTFS Elevation of Privilege Vulnerability |
| CVE-2021-41367 | 7.8 HIGH | NTFS Elevation of Privilege Vulnerability |
| CVE-2021-41366 | 7.8 HIGH | Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerabili |
| CVE-2021-40442 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2021-36957 | 7.8 HIGH | Windows Desktop Bridge Elevation of Privilege Vulnerability |
Showing top 20 of 54 CVEs. View all on vendor page → →
No comments yet