Proof of concept of CVE-2022-21907 Double Free in http.sys driver, triggering a kernel crash on IIS servers
-
Updated
Mar 16, 2024 - Python
Proof of concept of CVE-2022-21907 Double Free in http.sys driver, triggering a kernel crash on IIS servers
CVE-2022-21907: detection, protection, exploitation and demonstration. Exploitation: Powershell, Python, Ruby, NMAP and Metasploit. Detection and protection: Powershell. Demonstration: Youtube.
POC for CVE-2022-21907: HTTP Protocol Stack Remote Code Execution Vulnerability.
Repository containing nse script for vulnerability CVE-2022-21907. It is a component (IIS) vulnerability on Windows. It allows remote code execution. The vulnerability affects the kernel module http. sys, which handles most basic IIS operations.
Add a description, image, and links to the cve-2022-21907 topic page so that developers can more easily learn about it.
To associate your repository with the cve-2022-21907 topic, visit your repo's landing page and select "manage topics."