<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Rpc — PoC Archive</title><link>https://poc.intelseclab.com/tags/rpc/</link><description>Latest proof-of-concept entries.</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Mon, 27 Jul 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://poc.intelseclab.com/tags/rpc/index.xml" rel="self" type="application/rss+xml"/><item><title>Windows Message Queuing (MSMQ) Queue Manager Heap-Based Buffer Overflow (CVE-2026-54992)</title><link>https://poc.intelseclab.com/pocs/network/2026-07-27_cve-2026-54992-windows-msmq-heap-overflow/</link><pubDate>Mon, 27 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/network/2026-07-27_cve-2026-54992-windows-msmq-heap-overflow/</guid><description>High severity (CVSS 8.4) — network · CVE-2026-54992. Status: PoC (crash/DoS confirmed, no RCE demonstrated). Affects: Windows Message Queuing (MSMQ) — Queue Manager (mqqm.dll, hosted in mqsvc.exe), reached via the MS-MQRR (RemoteRead) RPC interface. Tags: windows, msmq, message-queuing, heap-overflow, integer-overflow, rpc, dos, crash.</description><category>network</category><category>High</category><category>windows</category><category>msmq</category><category>message-queuing</category><category>heap-overflow</category><category>integer-overflow</category><category>rpc</category><category>dos</category><category>crash</category></item><item><title>SonicWall SMA1000 WorkPlace SSRF → Internal Erlang RPC Remote Code Execution (CVE-2026-15409)</title><link>https://poc.intelseclab.com/pocs/network/2026-07-15_cve-2026-15409-sonicwall-sma1000-ssrf-erlang-rce/</link><pubDate>Wed, 15 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/network/2026-07-15_cve-2026-15409-sonicwall-sma1000-ssrf-erlang-rce/</guid><description>Critical severity (CVSS 10) — network · CVE-2026-15409 (SNWLID-2026-0008). Status: Weaponized — unauthenticated, non-root remote code execution confirmed against a real appliance build. Affects: SonicWall SMA1000 Appliance — WorkPlace interface (websocket proxy service). Tags: sonicwall, sma1000, workplace, ssrf, erlang, rpc, cwe-918, unauthenticated, remote, kev, actively-exploited.</description><category>network</category><category>Critical</category><category>sonicwall</category><category>sma1000</category><category>workplace</category><category>ssrf</category><category>erlang</category><category>rpc</category><category>cwe-918</category><category>unauthenticated</category><category>remote</category><category>kev</category><category>actively-exploited</category></item><item><title>UpdraftPlus WordPress Plugin — Unauthenticated RPC Key Bypass to Admin Creation &amp; RCE (CVE-2026-10795)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-10795-updraftplus-rpc-rce/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-10795-updraftplus-rpc-rce/</guid><description>Critical severity — web · CVE-2026-10795. Status: Weaponized. Affects: UpdraftPlus (WordPress backup plugin) — UpdraftCentral remote RPC feature. Tags: wordpress, plugin, updraftplus, rpc, unauthenticated, admin-takeover, plugin-upload, rce, mass-exploitation.</description><category>web</category><category>Critical</category><category>wordpress</category><category>plugin</category><category>updraftplus</category><category>rpc</category><category>unauthenticated</category><category>admin-takeover</category><category>plugin-upload</category><category>rce</category><category>mass-exploitation</category></item><item><title>Samba spoolss Print Job Command Injection RCE (CVE-2026-4480)</title><link>https://poc.intelseclab.com/pocs/network/2026-07-05_cve-2026-4480-samba-spoolss-rce/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/network/2026-07-05_cve-2026-4480-samba-spoolss-rce/</guid><description>Critical severity — network · CVE-2026-4480. Status: PoC. Affects: Samba (spoolss / print spooler RPC service). Tags: samba, spoolss, smb, printer, rpc, command-injection, reverse-shell.</description><category>network</category><category>Critical</category><category>samba</category><category>spoolss</category><category>smb</category><category>printer</category><category>rpc</category><category>command-injection</category><category>reverse-shell</category></item><item><title>BlueHammer Defender Local Privilege Escalation (CVE-2026-33825)</title><link>https://poc.intelseclab.com/pocs/binary/2026-05-15_bluehammer-defender-lpe/</link><pubDate>Fri, 15 May 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/binary/2026-05-15_bluehammer-defender-lpe/</guid><description>High severity (CVSS 7.8) — binary · CVE-2026-33825. Status: Weaponized. Affects: Microsoft Defender Antivirus update/scan workflow on Windows. Tags: LPE, Windows Defender, VSS, SAM-hive-leak, RPC, local-user.</description><category>binary</category><category>High</category><category>LPE</category><category>Windows Defender</category><category>VSS</category><category>SAM-hive-leak</category><category>RPC</category><category>local-user</category></item></channel></rss>