Proof of concept for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely.
翻译 - CVE-2021-31166的概念证明,它是远程触发的远程HTTP.sys释放后使用。
An HTTP content negotiator for Node.js
Determine the best encoding possible from an Accept-Encoding HTTP header.
PoC for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely. Although it was defined as remote command execution, it can only cause the system to crash.
Exploit for MS Http Protocol Stack RCE vulnerability (CVE-2021-31166)
PHP Parser to deal with HTTP Accept, Accept-Language, Accept-Encoding, and Content-Type headers
HTTP compression middleware