Sploitus

Exploit for Improper Input Validation in Microsoft

gitee Β· 2020-08-01

Exploit Code

MARKDOWN2 lines
## https://sploitus.com/exploit?id=A90F3BE1-4EBE-5FF3-BD50-7FC245B408E1
PoC exploit for CVE-2020-1350. The target product/service or framework is IIS, and the vulnerability class/vector is a deserialization vulnerability. The probable entry point is the `applicationhost.config` file, and the notable dependency/tooling is the IIS configuration file. The execution context is not specified, but it is likely related to the IIS configuration file. The run method is not specified. The preconditions are a vulnerable version of IIS, and the expected impact is a remote code execution.