thevampire

x_x
Staff member
Moderator
14 Sep 2020
2.267
2.442
2.810
4.814
image


PoC Exploit for Microsoft Exchange Launche

Original PoC: https://github.com/testanull 1

How to use:

python proxylogon.py <name or IP of server> <user@fqdn>

Example:

python proxylogon.py primary administrator@lab.local

If successful you will be dropped into a webshell. exit or quit to escape from the webshell (or ctrl+c)

By default, it will create a file test.aspx. This can be changed.

Special Thanks and resources:

@Flangvik @Testanull https://www.praetorian.com/blog/reproducing-proxylogon-exploit/ 2

GitHub:​

favicon.svg

https://github.com/hausec/ProxyLogon

33264718

hausec/ProxyLogon 3