2024-05-25 21:48:12 +02:00
|
|
|
### [CVE-2021-38666](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-38666)
|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|
&color=blue)
|
|
|
|
|

|
|
|
|
|
&color=blue)
|
|
|
|
|

|
|
|
|
|
&color=blue)
|
|
|
|
|
&color=blue)
|
|
|
|
|

|
|
|
|
|

|
|
|
|
|
&color=blue)
|
|
|
|
|

|
|
|
|
|
&color=blue)
|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
2025-09-29 21:09:30 +02:00
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
|
|
|
|

|
2024-05-25 21:48:12 +02:00
|
|
|
|
|
|
|
|
### Description
|
|
|
|
|
|
|
|
|
|
Remote Desktop Client Remote Code Execution Vulnerability
|
|
|
|
|
|
|
|
|
|
### POC
|
|
|
|
|
|
|
|
|
|
#### Reference
|
|
|
|
|
No PoCs from references.
|
|
|
|
|
|
|
|
|
|
#### Github
|
|
|
|
|
- https://github.com/ARPSyndicate/cvemon
|
|
|
|
|
- https://github.com/DanielEbert/winafl
|
|
|
|
|
- https://github.com/DarkSprings/CVE-2021-38666-poc
|
|
|
|
|
- https://github.com/Team-BT5/WinAFL-RDP
|
|
|
|
|
- https://github.com/bacon-tomato-spaghetti/WinAFL-RDP
|
|
|
|
|
- https://github.com/fardeen-ahmed/Bug-bounty-Writeups
|
|
|
|
|
- https://github.com/googleprojectzero/winafl
|
|
|
|
|
- https://github.com/nomi-sec/PoC-in-GitHub
|
|
|
|
|
- https://github.com/soosmile/POC
|
|
|
|
|
- https://github.com/ssumachai/CS182-Project
|
|
|
|
|
- https://github.com/yrime/WinAflCustomMutate
|
|
|
|
|
|