Exploitation Summary
EIP tracks 1 public exploit for CVE-2025-66576. PoCs published by Chokri Hammedi.
AI-analyzed exploit summary This exploit leverages a WebSocket connection to simulate keyboard inputs on Remote Keyboard Desktop 1.0.1, executing a payload via SMB to achieve remote code execution. It uses a reverse shell DLL generated by msfvenom and delivered via an SMB server.
Description
Remote Keyboard Desktop 1.0.1 enables remote attackers to execute system commands via the rundll32.exe exported function export, allowing unauthenticated code execution.
Exploits (1)
This exploit leverages a WebSocket connection to simulate keyboard inputs on Remote Keyboard Desktop 1.0.1, executing a payload via SMB to achieve remote code execution. It uses a reverse shell DLL generated by msfvenom and delivered via an SMB server.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H