安全研究

CVE-2022-41082 Microsoft Exchange RCE:ProxyNotShell 攻击链前置

#漏洞分析#代码审计#横向移动
Exchange autodiscover 端点 SSRF 串联 PowerShell 后端

ProxyNotShell 攻击链的 SSRF 前置——CVE-2022-41082 单独存在时只让攻击者打 Exchange 的内部 PowerShell Remoting,但配合 CVE-2022-41040 直接变成全网 RCE。

Unlock to view this content.