Full unauthenticated RCE proof of concept for Rocket.Chat 3.12.1 CVE-2021-22911# Rocket.Chat Automated Unauthenticated Account Takeover to RCE (CVE-2021-22911)
Full unauthenticated RCE proof of concept for Rocket.Chat 3.12.1 CVE-2021-22911
The original PoC created by Enox.
Currently this only works for accounts without 2FA. I will be adding 2FA bypasses shortly
---
### Created by optional
- [optional's Twitter](https://twitter.com/optionalctf)
[4.0K] /data/pocs/a924e6d59c7c97efe04084693f2203b685f6e55d
├── [7.8K] exploit.py
├── [ 372] README.md
└── [ 18] requirements.txt
0 directories, 3 files