Skip to content
KitploitKITPLOIT
أدواتالمدونة
إرسال
أدواتالمدونة
إرسال

أدوات الاختراق واختبار الاختراق والأمن السيبراني لترسانتك الأمنية!

Kitploit هو دليل لأدوات الاختراق والأمن السيبراني واختبار الاختراق. اكتشف آخر تحديثات المشاريع للعثور على الثغرات وتحليل الأنظمة وأتمتة الاختبارات وتعزيز أمنك.

··الخلاصات·اتصال·الخصوصية·© 2026 Kitploit

دليل الأدوات

الفئات

عرض جميع الفئات
Loading categories
TOP — أفضل ثغرات bugbounty للاختبار الأمني CVE-2023- POC Exp RCE مثال payload أشياء | Kitploit
أدوات/GitHubGitHub/ghosttroops/top
تصعيد الامتيازاتتحليل الثغرات الأمنيةالاستغلالاستغلال تطبيقات الويباختبار الاختراقالفريق الأحمرموارد منسقة
GitHubghosttroops/top

TOP

أفضل ثغرات bugbounty للاختبار الأمني CVE-2023- POC Exp RCE مثال payload أشياء

عرض المستودع
73112868منذ 10س 47دتمت المراجعة من قبل Kitploit

الأكثر شعبية

عرض الكل →

اكتشف الأدوات الأكثر استخدامًا من قبل مجتمعنا.

استكشف جميع الأدوات

تصفح مجموعتنا من الأدوات

عرض جميع الأدوات →
مشاركة
الموقع الإلكتروني

Tweet Follow on Twitter GitHub Followers Top Langs

TOP

all Top Top Top_Codeql TOP All bugbounty pentesting CVE-2022- POC Exp Things

جدول المحتويات

  • إجمالي أفضل 30 لعام 2026
  • إجمالي أفضل 30 لعام 2025
  • إجمالي أفضل 30 لعام 2024
  • إجمالي أفضل 30 لعام 2023
  • إجمالي أفضل 30 لعام 2022
  • إجمالي أفضل 30 لعام 2021
  • إجمالي أفضل 30 لعام 2020
  • إجمالي أفضل 30 لعام 2019
  • إجمالي أفضل 30 لعام 2018

2026

2025

2024

2022

2021

2020

2018

2017

التبرع

Wechat PayAliPayPaypalBTC PayBCH Pay
paypal [email protected]
تنزيل الأداة
starupdated_atnameurldes
40602026-09-05T18:54:27Zcopy-fail-CVE-2026-31431https://github.com/theori-io/copy-fail-CVE-2026-31431Copy Fail (CVE-2026-31431): ثغرة تصعيد صلاحيات محلية في نواة Linux عمرها 9 سنوات اكتشفها Xint Code من Theori
9162026-09-02T14:29:52Zwp2shell-PoChttps://github.com/sowarma/wp2shell-PoCإثبات مفهوم لسلسلة تنفيذ التعليمات عن بُعد CVE-2026-63030 و CVE-2026-60137
7722026-09-05T23:36:29Zwp2shell-pochttps://github.com/Icex0/wp2shell-pocwp2shell (CVE-2026-63030 و CVE-2026-60137) - سلسلة تنفيذ التعليمات عن بُعد كاملة
1812026-08-20T10:42:34Znext-16.2.4-pocshttps://github.com/dwisiswant0/next-16.2.4-pocsمجموعة إثباتات مفهوم أمنية لـ Next.js v16.2.4 (CVE-2026-23870، CVE-2026-44575، CVE-2026-44579، CVE-2026-44574، CVE-2026-44578، CVE-2026-44573، CVE-2026-44581، CVE-2026-44580، CVE-2026-44577، CVE-2026-44576، CVE-2026-44582، CVE-2026-44572)
9332026-09-05T19:06:56ZBYOVDhttps://github.com/BlackSnufkin/BYOVDحالات استخدام بحثية لـ BYOVD تتضمن اكتشاف برامج التشغيل الثغرة ومنهجية الهندسة العكسية. (CVE-2025-52915، CVE-2025-1055، CVE-2026-3609، CVE-2026-8501).
5722026-09-04T17:20:17Zcve_2026_31431https://github.com/rootsecdev/cve_2026_31431إثبات مفهوم استغلال لـ CVE_2026_31431
7392026-09-06T02:36:18Zghostlock-apphttps://github.com/YuKongA/ghostlock-appتطبيق GhostLock للتنفيذ بلمسة واحدة (CVE-2026-43499)
3262026-09-03T07:37:39ZCVE-2026-54121https://github.com/aniqfakhrul/CVE-2026-54121إثبات مفهوم Certighost
5322026-09-03T19:17:51Zcve-2026-41940-PoChttps://github.com/lanicer/cve-2026-41940-PoCأداة تجاوز المصادقة في cPanel و WHM
2392026-09-05T22:29:13ZCVE-2026-43499-popsiclehttps://github.com/x-spy/CVE-2026-43499-popsicleتنفيذ CVE-2026-43499 لـ 6.12.23-android16-5-g75e9b1c7ae7c-abogki463945075-4k
2122026-08-24T15:13:49ZCVE-2026-41089https://github.com/0xABCD01/CVE-2026-41089إثبات مفهوم CVE-2026-41089 — تجاوز سعة المخزن المؤقت في مكدس Netlogon CLDAP (CVSS 9.8 حرج)
2592026-09-02T02:28:06ZCVE-2026-21858https://github.com/Chocapikk/CVE-2026-21858n8n Ni8mare - قراءة ملفات عشوائية بدون مصادقة وصولاً إلى سلسلة تنفيذ التعليمات عن بُعد (CVSS 10.0)
11132026-09-06T01:24:04ZRoot-My-Galaxyhttps://github.com/BuSung-dev/Root-My-Galaxyمثبّت KSU لبرامج Samsung Galaxy الثابتة المدعومة مع CVE-2026-43499
2622026-08-30T07:08:06ZCVE-2026-40369-EXPLOIThttps://github.com/orinimron123/CVE-2026-40369-EXPLOITكود استغلال كامل لـ CVE-2026-40369 - ثغرة كتابة عشوائية في نواة Windows تسمح بالهروب من صندوق حماية المتصفح من عملية العرض في جميع المتصفحات
2072026-09-03T10:13:28ZCVE-2026-24061https://github.com/SafeBreach-Labs/CVE-2026-24061استغلال CVE-2026-24061
1562026-09-05T22:29:10ZCVE-2026-43499https://github.com/MobiusM/CVE-2026-43499إثبات مفهوم CVE-2026-43499
3612026-08-31T10:04:28Zcopyfail-gohttps://github.com/badsectorlabs/copyfail-goتنفيذ بلغة Go لـ copyfail (CVE-2026-31431)
1742026-09-04T12:54:40ZCVE-2026-62911https://github.com/hypnguyen1209/CVE-2026-62911إثبات مفهوم لتنفيذ التعليمات عن بُعد قبل المصادقة على Exchange
1062026-09-02T14:50:34Zwp2shellhttps://github.com/0xsha/wp2shellCVE-2026-63030 + CVE-2026-60137 - "wp2shell": تنفيذ التعليمات عن بُعد بدون مصادقة في نواة WordPress
8242026-08-29T02:46:00ZCVE-2026-24061https://github.com/jacubes/CVE-2026-24061إثبات مفهوم استغلال CVE-2026-24061
4962026-09-04T11:37:28ZcPanelSniperhttps://github.com/ynsmroztas/cPanelSniperCVE-2026-41940 — تجاوز مصادقة cPanel و WHM عبر حقن CRLF في ملف الجلسة
882026-09-05T14:30:39ZCVE-2026-75604-pochttps://github.com/rafabd1/CVE-2026-75604-pocإثبات مفهوم تنفيذ التعليمات عن بُعد على Windows في Next.js لـ CVE-2026-75604
2122026-09-05T15:31:02ZResetNightmarehttps://github.com/Semperis-Community/ResetNightmareأداة إثبات مفهوم لـ ResetNightmare (CVE-2026-27912)
1282026-08-19T06:30:54ZCVE-2026-20817https://github.com/oxfemale/CVE-2026-20817تصعيد الصلاحيات في Windows Error Reporting ALPC (CVE-2026-20817) - إثبات مفهوم استغلال يوضح تصعيد الصلاحيات المحلية عبر خدمة WER.
3172026-09-06T01:32:07ZRoot-My-Pixelhttps://github.com/alex193a/Root-My-Pixelكسر حماية هواتف Google Pixel المدعومة باستخدام CVE-2026-43499
1012026-09-04T19:55:40ZCVE-2026-42980-POChttps://github.com/G4sp4rCS/CVE-2026-42980-POCاستغلال عام لـ CVE-2026-42980 + بحث
462026-09-03T14:49:43Zsamsung-android-lpehttps://github.com/Vikramaditya015/samsung-android-lpeإثبات مفهوم لـ CVE-2026-20980، CVE-2026-20981، CVE-2026-20982
612026-09-05T16:57:13Zwp2shell-scannerhttps://github.com/ZephrFish/wp2shell-scannerماسح ضوئي لـ CVE-2026-63030، CVE-2026-60137، wp2shell
1112026-08-30T13:42:25ZCVE-2026-31431-Advanced-Exploithttps://github.com/Sndav/CVE-2026-31431-Advanced-ExploitCVE-2026-31431 纯文件利用
1202026-09-03T20:31:36ZCVE-2026-41651https://github.com/Vozec/CVE-2026-41651
starupdated_atnameurldes
14312026-09-01T11:54:27ZCVE-2025-55182https://github.com/msanft/CVE-2025-55182شرح وإثبات مفهوم كامل لتنفيذ التعليمات عن بُعد لـ CVE-2025-55182
24582026-09-05T16:31:41Zreact2shell-scannerhttps://github.com/assetnote/react2shell-scannerآلية كشف عالية الدقة لتنفيذ التعليمات عن بُعد في RSC/Next.js (CVE-2025-55182 و CVE-2025-66478)
7932026-08-24T12:23:34ZCVE-2025-55182-researchhttps://github.com/ejpir/CVE-2025-55182-researchإثبات مفهوم CVE-2025-55182
4932026-08-11T09:12:24ZCVE-2018-20250https://github.com/WyAtu/CVE-2018-20250استغلال لـ https://research.checkpoint.com/extracting-code-execution-from-winrar
7162026-09-02T03:40:10ZCVE-2025-33073https://github.com/mverschu/CVE-2025-33073إثبات مفهوم استغلال لثغرة انعكاس NTLM في SMB.
9332026-09-05T19:06:56ZBYOVDhttps://github.com/BlackSnufkin/BYOVDحالات استخدام بحثية لـ BYOVD تتضمن اكتشاف برامج التشغيل الثغرة ومنهجية الهندسة العكسية. (CVE-2025-52915، CVE-2025-1055، CVE-2026-3609، CVE-2026-8501).
5302026-08-30T23:03:21ZCVE-2025-32463_chwoothttps://github.com/pr0v3rbs/CVE-2025-32463_chwootتصعيد الصلاحيات إلى root عبر برنامج sudo مع خيار chroot. CVE-2025-32463
2502026-08-23T00:40:02ZIngressNightmare-PoChttps://github.com/hakaioffsec/IngressNightmare-PoCهذا كود إثبات مفهوم لاستغلال ثغرات IngressNightmare (CVE-2025-1097، CVE-2025-1098، CVE-2025-24514، و CVE-2025-1974).
3442026-08-24T14:52:54Zredis_exploithttps://github.com/raminfp/redis_exploitCVE-2025-49844 (RediShell)
4762026-09-05T19:01:51ZCVE-2025-32463https://github.com/kh4sh3i/CVE-2025-32463تصعيد الصلاحيات المحلية إلى root عبر sudo chroot في Linux
2682026-08-24T14:52:49ZCVE-2025-48799https://github.com/Wh04m1001/CVE-2025-48799
3152026-08-15T22:24:28ZCVE-2025-53770-Exploithttps://github.com/soltanali0/CVE-2025-53770-Exploitأداة استغلال حقن WebPart في SharePoint
1422026-08-14T00:51:12ZNextjs_RCE_Exploit_Toolhttps://github.com/pyroxenites/Nextjs_RCE_Exploit_Toolاستغلال لـ CVE-2025-55182 و CVE-2025-66478
3162026-08-29T00:10:14ZCVE-2025-55182https://github.com/emredavut/CVE-2025-55182كاشف ثغرة تنفيذ التعليمات عن بُعد في RSC/Next.js وإثبات مفهوم كإضافة Chrome – CVE-2025-55182 و CVE-2025-66478
10582026-08-29T11:37:43ZReact2Shell-CVE-2025-55182-original-pochttps://github.com/lachlan2k/React2Shell-CVE-2025-55182-original-pocإثباتات المفهوم الأصلية لـ React2Shell CVE-2025-55182
4082026-09-04T04:29:58ZCVE-2025-24071_PoChttps://github.com/0x6rss/CVE-2025-24071_PoCCVE-2025-24071: تسريب تجزئة NTLM عبر استخراج RAR/ZIP وملف .library-ms
1642026-07-15T09:04:59ZAirBorne-PoChttps://github.com/ekomsSavior/AirBorne-PoCإثبات مفهوم لـ CVE-2025-24252 و CVE-2025-24132
1982026-08-06T15:21:14ZCVE-2025-21298https://github.com/ynwarcs/CVE-2025-21298إثبات مفهوم وتفاصيل لـ CVE-2025-21298
2152026-08-17T06:27:29ZCVE-2025-32023https://github.com/leesh3288/CVE-2025-32023إثبات مفهوم واستغلال لـ CVE-2025-32023 / PlaidCTF 2025 "Zerodeo"
2022026-09-02T23:45:49ZiOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201https://github.com/JGoyd/iOS-Attack-Chain-CVE-2025-31200-CVE-2025-31201CVE-2025-31200 هي ثغرة يوم صفر، تنفيذ تعليمات عن بُعد بدون نقر في AudioConverterService في CoreAudio بنظام iOS، تُستثار بملف صوتي ضار عبر iMessage/SMS. تجاوز الاستغلال Blastdoor، ومكّن من تصعيد صلاحيات النواة (CVE-2025-31201)، وسمح بسرقة الرموز حتى تم إصلاحها في iOS 18.4.1 (16 أبريل 2025).
1962026-07-20T18:42:16ZCVE-2025-30208-EXPhttps://github.com/ThumpBo/CVE-2025-30208-EXPCVE-2025-30208-EXP
1902026-03-25T19:46:42ZRSC-Detect-CVE-2025-55182https://github.com/alptexans/RSC-Detect-CVE-2025-55182RSC Detect CVE 2025 55182
3852026-08-11T06:04:12ZColorOS-CVE-2025-10184https://github.com/yuuouu/ColorOS-CVE-2025-10184ColorOS短信漏洞,以及用户自救方案
2832026-08-31T11:32:54ZCVE-2025-55182-advanced-scanner-https://github.com/zack0x01/CVE-2025-55182-advanced-scanner-
4322026-08-30T22:41:40ZNext.js-RSC-RCE-Scanner-CVE-2025-66478https://github.com/Malayke/Next.js-RSC-RCE-Scanner-CVE-2025-66478ماسح ضوئي بسطر الأوامر للكشف الدفعي عن إصدارات تطبيقات Next.js وتحديد ما إذا كانت متأثرة بثغرة CVE-2025-66478.
1972026-08-27T11:19:26ZPOC-CVE-2025-24813https://github.com/absholi7ly/POC-CVE-2025-24813يحتوي هذا المستودع على نص برمجي آلي لإثبات المفهوم (PoC) لاستغلال CVE-2025-24813، وهي ثغرة تنفيذ التعليمات عن بُعد (RCE) في Apache Tomcat. تسمح الثغرة للمهاجم برفع حمولة مُسلسَلة ضارة إلى الخادم، مما يؤدي إلى تنفيذ تعليمات عشوائية عبر إلغاء التسلسل عند تحقق شروط محددة.
1512026-07-23T05:00:18ZCVE-2025-11001https://github.com/pacbypass/CVE-2025-11001استغلال لـ CVE-2025-11001 أو CVE-2025-11002
912026-08-03T04:47:49ZIngressNightmare-POCshttps://github.com/sandumjacob/IngressNightmare-POCsCVE-2025-1974
2322026-09-03T19:51:55ZCVE-2025-21333-POChttps://github.com/MrAle98/CVE-2025-21333-POCإثبات مفهوم استغلال لـ CVE-2025-21333 تجاوز سعة المخزن المؤقت المعتمد على الكومة. يستفيد من بيانات حالة WNF و I/O ring IOP_MC_BUFFER_ENTRY
3542026-08-25T14:17:44Zo3_finds_cve-2025-37899https://github.com/SeanHeelan/o3_finds_cve-2025-37899مواد لمنشور مدونة حول اكتشاف CVE-2025-37899 باستخدام o3
starupdated_atnameurldes
24582026-09-01T15:26:46ZCVE-2024-1086https://github.com/Notselwyn/CVE-2024-1086إثبات مفهوم استغلال عالمي لتصعيد الصلاحيات المحلية لـ CVE-2024-1086، يعمل على معظم نوى Linux بين v5.14 و v6.6، بما في ذلك Debian و Ubuntu و KernelCTF. معدل النجاح 99.4% في صور KernelCTF.
6922026-09-01T03:08:23ZCVE-2024-38063https://github.com/ynwarcs/CVE-2024-38063إثبات مفهوم لـ CVE-2024-38063 (تنفيذ التعليمات عن بُعد في tcpip.sys)
4972026-09-04T20:23:59Zcve-2024-6387-pochttps://github.com/zgzhang/cve-2024-6387-pocحالة تسابق في معالج الإشارات في خادم OpenSSH (sshd)
5202026-08-21T18:07:43ZCVE-2024-49113https://github.com/SafeBreach-Labs/CVE-2024-49113LdapNightmare هي أداة إثبات مفهوم تختبر خادم Windows Server الثغرة ضد CVE-2024-49113
5332026-07-10T06:04:54Zgit_rcehttps://github.com/amalmurali47/git_rceإثبات مفهوم استغلال لـ CVE-2024-32002
5282026-09-02T11:37:54ZCVE-2024-6387_Checkhttps://github.com/xaitax/CVE-2024-6387_CheckCVE-2024-6387_Check هي أداة خفيفة وفعّالة مصممة لتحديد الخوادم التي تعمل بإصدارات ثغرة من OpenSSH
2242026-08-24T14:52:32ZCVE-2024-38077https://github.com/qi4L/CVE-2024-38077RDL的堆溢出导致的RCE
3352026-08-15T23:13:07ZCVE-2024-21338https://github.com/hakaioffsec/CVE-2024-21338تصعيد الصلاحيات المحلية من Admin إلى النواة في أنظمة تشغيل Windows 10 و Windows 11 مع تمكين HVCI.
3782026-09-02T00:38:43Zcve-2024-6387-pochttps://github.com/acrono/cve-2024-6387-pocإثبات مفهوم 32-بت لـ CVE-2024-6387 — نسخة مطابقة من 7etsuo/cve-2024-6387-poc الأصلية
3302026-08-12T11:23:08ZCVE-2024-0044https://github.com/0xbinder/CVE-2024-0044CVE-2024-0044: ثغرة "run-as any app" عالية الخطورة تؤثر على إصدارات Android 12 و 13
3222026-09-03T14:04:19ZCVE-2024-4577https://github.com/watchtowrlabs/CVE-2024-4577إثبات مفهوم تنفيذ التعليمات عن بُعد لحقن وسائط PHP CGI (CVE-2024-4577)
1352026-08-18T13:26:58Zapache-vulnerability-testinghttps://github.com/mrmtwoj/apache-vulnerability-testingأداة اختبار ثغرات خادم Apache HTTP
2892026-08-15T23:13:15ZCVE-2024-30088https://github.com/tykawaii98/CVE-2024-30088
2802026-09-03T06:39:26ZCVE-2024-21413https://github.com/CMNatic/CVE-2024-21413إثبات مفهوم CVE-2024-21413 لمختبر THM
35532026-09-03T02:30:53Zxzbothttps://github.com/amlweems/xzbotملاحظات، ومصيدة، وعرض استغلال لباب خلفي xz (CVE-2024-3094)
2072026-08-06T10:48:24ZCVE-2024-23897https://github.com/h4x0r-dz/CVE-2024-23897CVE-2024-23897
7702026-09-03T01:08:20ZCVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-Vulnerabilityhttps://github.com/xaitax/CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-VulnerabilityMicrosoft-Outlook-Remote-Code-Execution-Vulnerability
2032026-08-31T10:28:00ZCVE-2024-4367-PoChttps://github.com/LOURC0D3/CVE-2024-4367-PoCإثبات مفهوم CVE-2024-4367 و CVE-2024-34342
2712026-08-28T14:55:35ZCVE-2024-49138-POChttps://github.com/MrAle98/CVE-2024-49138-POCإثبات مفهوم استغلال لـ CVE-2024-49138
1942026-08-29T10:01:47ZCVE-2024-6387https://github.com/Karmakstylez/CVE-2024-6387ثغرة تنفيذ التعليمات عن بُعد بدون مصادقة في خادم OpenSSH (CVE-2024-6387)
92026-08-15T23:13:20ZCVE-2024-38077-POChttps://github.com/SecStarBot/CVE-2024-38077-POC
2352026-07-27T12:00:41ZCVE_2024_30078_POC_WIFIhttps://github.com/blkph0x/CVE_2024_30078_POC_WIFIمفهوم أساسي لأحدث ثغرة CVE في برنامج تشغيل wifi في Windows
1802026-08-10T14:45:08ZCVE-2024-25600https://github.com/Chocapikk/CVE-2024-25600تنفيذ التعليمات عن بُعد بدون مصادقة – Bricks <= 1.9.6
2172026-08-22T03:10:54ZCVE-2024-21111https://github.com/mansk1es/CVE-2024-21111ثغرة تصعيد الصلاحيات (تصعيد الصلاحيات المحلية) في Oracle VirtualBox
1362026-08-15T23:13:25ZCVE-2024-7479_CVE-2024-7481https://github.com/PeterGabaldon/CVE-2024-7479_CVE-2024-7481إثبات مفهوم تصعيد الصلاحيات من المستخدم إلى النواة في TeamViewer. CVE-2024-7479 و CVE-2024-7481. ZDI-24-1289 و ZDI-24-1290. TV-2024-1006.
1472026-08-10T13:29:55ZCVE-2024-38200https://github.com/passtheticket/CVE-2024-38200CVE-2024-38200 و CVE-2024-43609 - ثغرة كشف NTLMv2 في Microsoft Office
812026-07-27T12:00:40ZCVE-2024-30078-https://github.com/lvyitian/CVE-2024-30078-نص برمجي لكشف وتنفيذ الأوامر لـ CVE-2024-30078
872026-08-15T22:24:27ZCVE-2024-40725-CVE-2024-40898https://github.com/TAM-K592/CVE-2024-40725-CVE-2024-40898CVE-2024-40725 و CVE-2024-40898، تؤثران على إصدارات خادم Apache HTTP من 2.4.0 حتى 2.4.61. تشكل هذه العيوب مخاطر كبيرة على خوادم الويب حول العالم، مما قد يؤدي إلى كشف الكود المصدري وهجمات تزوير الطلبات من جانب الخادم (SSRF).
1122026-08-30T11:11:36ZCVE-2024-6387https://github.com/l0n3m4n/CVE-2024-6387إثبات مفهوم - ثغرة تنفيذ التعليمات عن بُعد بدون مصادقة في خادم OpenSSH (ماسح ضوئي واستغلال)
1582026-08-24T03:27:37ZCVE-2024-21413https://github.com/duy-31/CVE-2024-21413ثغرة كشف معلومات Microsoft Outlook (تسريب تجزئة كلمة المرور) - إثبات مفهوم بنص Expect
starupdated_atnameurldes
---------------
4192026-07-27T12:00:10Zqq-tim-elevationhttps://github.com/vi3t1/qq-tim-elevationCVE-2023-34312
14892026-09-01T15:26:22Zcvelisthttps://github.com/CVEProject/cvelistبرنامج تجريبي لتقديم CVE عبر GitHub. تقديم سجلات CVE عبر Pilot PRs المنتهية في 6/30/2023
5062026-08-21T11:19:59ZWindows_LPE_AFD_CVE-2023-21768https://github.com/chompie1337/Windows_LPE_AFD_CVE-2023-21768استغلال LPE لـ CVE-2023-21768
7822026-07-29T17:11:08ZCVE-2023-38831-winrar-exploithttps://github.com/b1tg/CVE-2023-38831-winrar-exploitمولّد استغلال CVE-2023-38831 winrar
3832026-09-05T06:31:33ZCVE-2023-32233https://github.com/Liuk3r/CVE-2023-32233CVE-2023-32233: ثغرة أمنية في نواة Linux
3942026-09-05T21:48:15ZCVE-2023-4911https://github.com/leesh3288/CVE-2023-4911إثبات مفهوم لـ CVE-2023-4911
4182026-07-27T12:00:05ZCVE-2023-0386https://github.com/xkaneiki/CVE-2023-0386رفع الصلاحيات عبر CVE-2023-0386 على ubuntu22.04
1162026-08-24T14:52:11ZCVE-2023-21839https://github.com/ASkyeye/CVE-2023-21839Weblogic CVE-2023-21839 RCE (تنفيذ أوامر عن بُعد بنقرة واحدة دون الحاجة إلى Java)
3282026-08-18T21:26:43ZCVE-2023-21752https://github.com/Wh04m1001/CVE-2023-21752
6522026-09-05T14:40:10Zkeepass-password-dumperhttps://github.com/vdohney/keepass-password-dumperإثبات المفهوم الأصلي لـ CVE-2023-32784
2832026-07-30T00:43:58ZCVE-2023-21608https://github.com/hacksysteam/CVE-2023-21608Adobe Acrobat Reader - CVE-2023-21608 - استغلال تنفيذ الأوامر عن بُعد
3172026-08-20T20:28:38ZCVE-2023-4863https://github.com/mistymntncop/CVE-2023-4863
2422026-08-21T11:20:13ZCVE-2023-36874https://github.com/Wh04m1001/CVE-2023-36874
2472026-08-14T12:24:08ZCVE-2023-44487https://github.com/bcdannyboy/CVE-2023-44487فحص أساسي للثغرات لمعرفة ما إذا كانت خوادم الويب قد تكون عرضة لـ CVE-2023-44487
2282026-07-29T15:55:14ZCVE-2023-3519https://github.com/BishopFox/CVE-2023-3519استغلال RCE لـ CVE-2023-3519
2452026-08-10T14:45:02ZCVE-2023-7028https://github.com/Vozec/CVE-2023-7028يقدّم هذا المستودع إثبات مفهوم لـ CVE-2023-7028
1692026-07-12T21:14:55ZCVE-2023-36745https://github.com/N1k0la-T/CVE-2023-36745
1402026-08-09T23:29:11ZCVE-2023-34362https://github.com/horizon3ai/CVE-2023-34362MOVEit CVE-2023-34362
2282026-08-25T15:16:27ZCVE-2023-20887https://github.com/sinsinology/CVE-2023-20887VMWare vRealize Network Insight تنفيذ أوامر عن بُعد قبل المصادقة (CVE-2023-20887)
3452026-09-03T19:51:33ZCVE-2023-23397-POC-Powershellhttps://github.com/api0cradle/CVE-2023-23397-POC-Powershell
1832026-08-15T23:12:53ZCVE-2023-28252https://github.com/fortra/CVE-2023-28252
1362026-08-15T22:24:27ZCVE-2023-2640-CVE-2023-32629https://github.com/g1vi/CVE-2023-2640-CVE-2023-32629GameOver(lay) رفع الصلاحيات على Ubuntu
2892026-08-08T13:06:40ZCVE-2023-25690-POChttps://github.com/dhmosfunk/CVE-2023-25690-POCCVE 2023 25690 إثبات مفهوم - إعداد mod_proxy غير الآمن على خوادم Apache HTTP الإصدارات 2.4.0 - 2.4.55 يؤدي إلى ثغرة تهريب طلبات HTTP.
2412026-08-06T11:26:50ZWeblogic-CVE-2023-21839https://github.com/DXask88MA/Weblogic-CVE-2023-21839
2062026-08-31T13:38:48ZCVE-2023-46747-RCEhttps://github.com/W01fh4cker/CVE-2023-46747-RCEاستغلال لـ f5-big-ip RCE cve-2023-46747
1532026-09-04T10:06:50Zcve-2023-29360https://github.com/Nero22k/cve-2023-29360استغلال لـ CVE-2023-29360 يستهدف برنامج التشغيل MSKSSRV.SYS
2372026-09-03T19:51:42ZCVE-2023-29357https://github.com/Chocapikk/CVE-2023-29357ثغرة رفع الصلاحيات في Microsoft SharePoint Server
1672026-08-17T13:31:52ZCVE-2023-25157https://github.com/win3zz/CVE-2023-25157CVE-2023-25157 - حقن SQL في GeoServer - إثبات مفهوم
1652026-07-23T03:14:23ZWindows_MSKSSRV_LPE_CVE-2023-36802https://github.com/chompie1337/Windows_MSKSSRV_LPE_CVE-2023-36802استغلال LPE لـ CVE-2023-36802
1582026-08-21T11:20:01ZCVE-2023-23397_EXPLOIT_0DAYhttps://github.com/sqrtZeroKnowledge/CVE-2023-23397_EXPLOIT_0DAYاستغلال لـ CVE-2023-23397
starupdated_atnameurldes
4382026-09-05T06:31:04ZCVE-2022-25636https://github.com/Bonfee/CVE-2022-25636CVE-2022-25636
4612026-08-28T14:55:07ZCVE-2022-21882https://github.com/KaLendsi/CVE-2022-21882win32k LPE
11332026-08-26T03:57:20ZCVE-2022-0847-DirtyPipe-Exploithttps://github.com/Arinerron/CVE-2022-0847-DirtyPipe-Exploitاستغلال صلاحيات الجذر لـ CVE-2022-0847 (Dirty Pipe)
3792026-07-11T17:00:38ZCVE-2022-0185https://github.com/Crusaders-of-Rust/CVE-2022-0185CVE-2022-0185
6732026-07-23T03:14:03ZCVE-2022-29072https://github.com/kagancapar/CVE-2022-29072يتيح 7-Zip حتى الإصدار 21.07 على Windows رفع الصلاحيات وتنفيذ الأوامر عند سحب ملف بامتداد .7z إلى منطقة Help>Contents.
4972026-09-01T03:56:02ZCVE-2022-0995https://github.com/Bonfee/CVE-2022-0995استغلال CVE-2022-0995
5732026-08-24T11:54:59ZCVE-2022-23222https://github.com/tr3ee/CVE-2022-23222CVE-2022-23222: رفع الصلاحيات المحلي في نواة Linux عبر eBPF
5282026-07-11T17:03:47ZOpenSSL-2022https://github.com/NCSC-NL/OpenSSL-2022معلومات تشغيلية بخصوص CVE-2022-3602 و CVE-2022-3786، وهما ثغرتان في OpenSSL 3
2232026-05-13T19:49:24ZSpring-Cloud-Gateway-CVE-2022-22947https://github.com/lucksec/Spring-Cloud-Gateway-CVE-2022-22947CVE-2022-22947
3602026-08-18T21:14:11ZCVE-2022-21907https://github.com/ZZ-SOCMAP/CVE-2022-21907ثغرة تنفيذ الأوامر عن بُعد في مكدس بروتوكول HTTP CVE-2022-21907
3772026-08-21T11:19:25ZCVE-2022-29464https://github.com/hakivvi/CVE-2022-29464استغلال WSO2 RCE (CVE-2022-29464) وشرح تفصيلي.
7322026-09-05T06:19:39ZCVE-2022-0847-DirtyPipe-Exploitshttps://github.com/AlexisAhmed/CVE-2022-0847-DirtyPipe-Exploitsمجموعة من الاستغلالات والوثائق التي يمكن استخدامها لاستغلال ثغرة Linux Dirty Pipe.
3582026-09-01T19:54:28ZCVE-2022-40684https://github.com/horizon3ai/CVE-2022-40684إثبات مفهوم استغلال لـ CVE-2022-40684 يؤثر على Fortinet FortiOS و FortiProxy و FortiSwitchManager
4872026-08-21T11:19:45ZCVE-2022-2588https://github.com/Markakd/CVE-2022-2588استغلال لـ CVE-2022-2588
3872026-07-27T14:08:58ZCVE-2022-39197https://github.com/its-arun/CVE-2022-39197CobaltStrike <= 4.7.1 RCE
4142026-09-03T19:51:26ZCVE-2022-33679https://github.com/Bdenneu/CVE-2022-33679يوم واحد بناءً على https://googleprojectzero.blogspot.com/2022/10/rc4-is-still-considered-harmful.html
2822026-06-22T01:47:59ZCVE-2022-0847https://github.com/r1is/CVE-2022-0847CVE-2022-0847-DirtyPipe-Exploit CVE-2022-0847 هي ثغرة رفع صلاحيات محلية موجودة في نواة Linux الإصدار 5.8 وما بعده. من خلال استغلال هذه الثغرة، يمكن للمهاجم الكتابة فوق البيانات في أي ملف قابل للقراءة، مما يسمح برفع المستخدم العادي إلى صلاحيات الجذر المميزة. مبدأ ثغرة CVE-2022-0847 مشابه لثغرة CVE-2016-5195 Dirty Cow، لكنها أسهل في الاستغلال. أطلق مؤلف الثغرة عليها اسم "Dirty Pipe"
3532026-08-20T09:45:56ZCVE-2022-21894https://github.com/Wack0/CVE-2022-21894baton drop (CVE-2022-21894): ثغرة تجاوز ميزة الأمان في Secure Boot
3252026-07-31T14:19:06ZSpring4Shell-POChttps://github.com/reznok/Spring4Shell-POCتطبيق Spring4Shell (CVE-2022-22965) المُحزَّم في Docker لإثبات المفهوم والاستغلال
4602026-08-24T08:16:08ZCVE-2022-27254https://github.com/nonamecoder/CVE-2022-27254إثبات مفهوم لثغرة في نظام المفتاح عن بُعد في هوندا (CVE-2022-27254)
3172026-06-22T11:04:03ZCVE-2022-39197-patchhttps://github.com/burpheart/CVE-2022-39197-patchCVE-2022-39197 漏洞补丁. CVE-2022-39197 Vulnerability Patch.
5972026-09-05T18:21:18ZCVE-2022-38694_unlock_bootloaderhttps://github.com/TomKing062/CVE-2022-38694_unlock_bootloaderهذا تجاوز للتحقق من التوقيع لمرة واحدة. لتجاوز التحقق من التوقيع بشكل دائم، راجع https://github.com/TomKing062/CVE-2022-38691_38692
3022026-07-26T11:42:14ZCVE-2022-21971https://github.com/0vercl0k/CVE-2022-21971إثبات مفهوم لـ CVE-2022-21971 "ثغرة تنفيذ الأوامر عن بُعد في Windows Runtime"
2652026-04-05T11:55:32ZCVE-2022-39952https://github.com/horizon3ai/CVE-2022-39952إثبات مفهوم لـ CVE-2022-39952
2842026-08-24T14:52:04Zcve-2022-27255https://github.com/infobyte/cve-2022-27255
2382026-08-24T14:51:59ZCVE-2022-20699https://github.com/Audiobahn/CVE-2022-20699Cisco Anyconnect VPN تنفيذ أوامر عن بُعد دون مصادقة (rwx stack)
2362026-08-31T15:38:57ZCVE-2022-30075https://github.com/aaronsvk/CVE-2022-30075Tp-Link Archer AX50 تنفيذ أوامر عن بُعد بعد المصادقة (CVE-2022-30075)
2192026-06-02T12:40:09ZCVE-2022-34918https://github.com/veritas501/CVE-2022-34918CVE-2022-34918 netfilter nf_tables إثبات مفهوم رفع الصلاحيات المحلي
1152026-07-03T14:59:15ZCVE-2022-22963https://github.com/dinosn/CVE-2022-22963إثبات مفهوم CVE-2022-22963
1972026-07-13T09:28:39ZCVE-2022-21882https://github.com/L4ys/CVE-2022-21882
starupdated_atnameurldes
14142026-09-01T15:26:24ZnoPachttps://github.com/cube0x0/noPacCVE-2021-42287/CVE-2021-42278 أداة فحص واستغلال.
20012026-09-06T00:10:43ZCVE-2021-1675https://github.com/cube0x0/CVE-2021-1675تطبيق C# و Impacket لـ PrintNightmare CVE-2021-1675/CVE-2021-34527
20482026-09-01T15:26:33ZCVE-2021-4034https://github.com/berdav/CVE-2021-4034CVE-2021-4034 1day
18082026-09-05T22:53:02ZCVE-2021-40444https://github.com/lockedbyte/CVE-2021-40444إثبات مفهوم CVE-2021-40444
11622026-09-05T06:04:24ZCVE-2021-4034https://github.com/arthepsy/CVE-2021-4034إثبات مفهوم لـ PwnKit: ثغرة رفع الصلاحيات المحلي في pkexec الخاص بـ polkit (CVE-2021-4034)
10232026-09-05T05:48:21ZCVE-2021-3156https://github.com/blasty/CVE-2021-3156
11082026-09-04T02:10:14ZCVE-2021-1675https://github.com/calebstewart/CVE-2021-1675تطبيق PowerShell خالص لـ CVE-2021-1675 Print Spooler رفع الصلاحيات المحلي (PrintNightmare)
4972026-09-03T19:51:00ZCVE-2021-21972https://github.com/NS-Sp4ce/CVE-2021-21972استغلال CVE-2021-21972
10672026-08-23T03:16:37Zsam-the-adminhttps://github.com/safebuffer/sam-the-adminاستغلال CVE-2021-42278 و CVE-2021-42287 لانتحال شخصية DA من مستخدم نطاق عادي
8042026-08-26T08:10:59ZCVE-2021-3156https://github.com/worawit/CVE-2021-3156استغلال Sudo Baron Samedit
8332026-09-03T02:54:08ZCVE-2021-40444https://github.com/klezVirus/CVE-2021-40444CVE-2021-40444 - استغلال RCE في Microsoft Office Word مُسلَّح بالكامل
4262026-08-23T20:16:03ZCVE-2021-1732-Exploithttps://github.com/KaLendsi/CVE-2021-1732-Exploitاستغلال CVE-2021-1732
10232026-09-05T23:38:24ZnoPachttps://github.com/Ridter/noPacاستغلال CVE-2021-42278 و CVE-2021-42287 لانتحال شخصية DA من مستخدم نطاق عادي
8272026-07-31T15:53:30ZCVE-2021-31166https://github.com/0vercl0k/CVE-2021-31166إثبات مفهوم لـ CVE-2021-31166، ثغرة use-after-free في HTTP.sys يتم تشغيلها عن بُعد.
8602026-08-17T13:31:50ZCVE-2021-44228-Scannerhttps://github.com/logpresso/CVE-2021-44228-Scannerأداة فحص الثغرات وتصحيح التخفيف لـ Log4j2 CVE-2021-44228
18482026-09-04T08:37:46Zlog4j-shell-pochttps://github.com/kozmer/log4j-shell-pocإثبات مفهوم لثغرة CVE-2021-44228.
11412026-08-30T16:31:59Zlog4shell-vulnerable-apphttps://github.com/christophetd/log4shell-vulnerable-appتطبيق ويب Spring Boot معرّض لـ Log4Shell (CVE-2021-44228).
4432026-09-03T09:48:19ZCVE-2021-3493https://github.com/briskets/CVE-2021-3493رفع الصلاحيات المحلي في Ubuntu OverlayFS
3252026-05-31T05:04:48ZCVE-2021-1675-LPEhttps://github.com/hlldz/CVE-2021-1675-LPEإصدار رفع الصلاحيات المحلي لـ CVE-2021-1675/CVE-2021-34527
1862026-07-17T09:01:22Zexprologhttps://github.com/herwonowr/exprologإثبات مفهوم سلسلة الاستغلال الكاملة لـ ProxyLogon (CVE-2021–26855, CVE-2021–26857, CVE-2021–26858, CVE-2021–27065)
4392026-06-20T15:36:09Zlog4j-finderhttps://github.com/fox-it/log4j-finderالعثور على إصدارات Log4j2 المعرّضة للثغرات على القرص وكذلك داخل ملفات Java Archive (Log4Shell CVE-2021-44228, CVE-2021-45046, CVE-2021-45105)
4292026-07-29T10:34:22ZCVE-2021-3156https://github.com/stong/CVE-2021-3156إثبات مفهوم لـ CVE-2021-3156 (تجاوز سعة المخزن المؤقت في sudo)
1762026-08-17T13:31:49ZProxyVulnshttps://github.com/hosch3n/ProxyVulns[ProxyLogon] CVE-2021-26855 & CVE-2021-27065 استغلال خطأ RawIdentity المُصلَّح. [ProxyOracle] سلاسل استغلال CVE-2021-31195 & CVE-2021-31196. [ProxyShell] سلاسل استغلال CVE-2021-34473 & CVE-2021-34523 & CVE-2021-31207.
2872026-08-28T07:19:34ZCVE-2021-22205https://github.com/Al1ex/CVE-2021-22205CVE-2021-22205& GitLab CE/EE RCE
34222026-08-24T02:07:57Zlog4j-scanhttps://github.com/fullhunt/log4j-scanأداة فحص آلية بالكامل ودقيقة وشاملة للعثور على log4j RCE CVE-2021-44228
2682026-09-03T19:51:00ZCVE-2021-21972https://github.com/horizon3ai/CVE-2021-21972إثبات مفهوم استغلال لـ vCenter CVE-2021-21972
3012026-09-04T02:23:31ZCVE-2021-36260https://github.com/Aiminsun/CVE-2021-36260ثغرة حقن الأوامر في خادم الويب لبعض منتجات Hikvision. بسبب عدم كفاية التحقق من المدخلات، يمكن للمهاجم استغلال الثغرة لشن هجوم حقن أوامر عبر إرسال بعض الرسائل بأوامر ضارة.
1472026-05-23T10:52:31ZCVE-2021-41773_CVE-2021-42013https://github.com/inbug-team/CVE-2021-41773_CVE-2021-42013أداة فحص جماعي لثغرتي CVE-2021-41773 CVE-2021-42013
3252026-08-21T18:45:26ZCVE-2021-34527https://github.com/JohnHammond/CVE-2021-34527
1222026-09-03T09:07:12Zproxyshellhttps://github.com/horizon3ai/proxyshellإثبات مفهوم لـ CVE-2021-34473 و CVE-2021-34523 و CVE-2021-31207
starupdated_atnameurldes
42892026-09-04T01:55:44Zexphubhttps://github.com/zhzyker/exphubExphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-14882、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020-2551、CVE-2020-2555、CVE-2020-2883、CVE-2019-17558、CVE-2019-6340
18322026-09-01T15:26:49ZCVE-2020-1472https://github.com/bvcyber/CVE-2020-1472أداة اختبار لـ CVE-2020-1472
20752026-09-01T15:26:20ZweblogicScannerhttps://github.com/0xn0ne/weblogicScannerأداة فحص ثغرات weblogic. تتضمن حالياً القدرة على كشف الثغرات التالية: CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-2018-2893、CVE-2018-2894、CVE-2018-3191、CVE-2018-3245、CVE-2018-3252、CVE-2019-2618、CVE-2019-2725、CVE-2019-2729、CVE-2019-2890、CVE-2020-2551、CVE-2020-14750、CVE-2020-14882、CVE-2020-14883
13592026-08-21T11:17:52ZCVE-2020-0796https://github.com/danigargu/CVE-2020-0796CVE-2020-0796 - استغلال LPE في Windows SMBv3 #SMBGhost
13232026-09-03T13:04:39ZCVE-2020-1472https://github.com/dirkjanm/CVE-2020-1472إثبات مفهوم لـ Zerologon - جميع فضول البحث تعود إلى Tom Tervoort من Secura
2872026-08-04T08:01:02ZCVE-2020-14882https://github.com/jas502n/CVE-2020-14882CVE-2020–14882、CVE-2020–14883
3282026-08-05T23:19:15Zcve-2020-0688https://github.com/Ridter/cve-2020-0688cve-2020-0688
7062026-09-02T23:02:20Zzerologonhttps://github.com/risksense/zerologonاستغلال لـ zerologon cve-2020-1472
7222026-09-04T16:53:43ZSMBGhosthttps://github.com/ly4k/SMBGhostأداة فحص لـ CVE-2020-0796 - SMBv3 RCE
3532026-09-04T00:17:18ZCVEAC-2020https://github.com/thesecretclub/CVEAC-2020تجاوز فحص سلامة EasyAntiCheat عبر محاكاة تغييرات الذاكرة
5712026-08-15T23:12:11ZCVE-2020-0796-RCE-POChttps://github.com/jamf/CVE-2020-0796-RCE-POCإثبات مفهوم تنفيذ الأوامر عن بُعد CVE-2020-0796
3742025-12-23T08:30:40ZCVE-2020-5902https://github.com/jas502n/CVE-2020-5902CVE-2020-5902 BIG-IP
1332026-07-03T05:20:29ZCVE_2020_2546https://github.com/hktalent/CVE_2020_2546CVE-2020-2546,CVE-2020-2915 CVE-2020-2801 CVE-2020-2798 CVE-2020-2883 CVE-2020-2884 CVE-2020-2950 WebLogic T3 payload exploit poc python3,
2232026-07-29T10:34:10ZSAP_RECONhttps://github.com/chipik/SAP_RECONإثبات مفهوم لـ CVE-2020-6287، CVE-2020-6286 (ثغرة SAP RECON)
8892026-08-11T23:19:25ZCurveBallhttps://github.com/ly4k/CurveBallإثبات مفهوم لـ CVE-2020-0601- Windows CryptoAPI (Crypt32.dll)
2942026-08-04T08:00:45ZCNVD-2020-10487-Tomcat-Ajp-lfi-Scannerhttps://github.com/bkfish/CNVD-2020-10487-Tomcat-Ajp-lfi-ScannerCnvd-2020-10487 / cve-2020-1938، أداة فحص
3362026-08-04T08:00:45ZCVE-2020-2551https://github.com/Y4er/CVE-2020-2551Weblogic IIOP CVE-2020-2551
2492026-05-28T08:01:05ZBlueGatehttps://github.com/ly4k/BlueGateإثبات مفهوم (DoS + أداة فحص) لـ CVE-2020-0609 & CVE-2020-0610 - RD Gateway RCE
3542026-08-05T23:16:25ZCVE-2020-0688https://github.com/zcgonvh/CVE-2020-0688أدوات استغلال وكشف لـ CVE-2020-0688
7212026-08-13T09:49:27ZCVE-2020-0787-EXP-ALL-WINDOWS-VERSIONhttps://github.com/cbwang505/CVE-2020-0787-EXP-ALL-WINDOWS-VERSIONيدعم جميع إصدارات Windows
1012026-04-03T14:54:58Zdnspooqhttps://github.com/knqyf263/dnspooqDNSpooq - تسميم ذاكرة التخزين المؤقت في dnsmasq (CVE-2020-25686, CVE-2020-25684, CVE-2020-25685)
3312026-09-03T11:41:49ZCVE-2020-0796-PoChttps://github.com/eerykitty/CVE-2020-0796-PoCإثبات مفهوم لتشغيل تجاوز سعة المخزن المؤقت عبر CVE-2020-0796
3982026-08-21T13:18:39ZCVE-2020-1472https://github.com/VoidSec/CVE-2020-1472كود استغلال لـ CVE-2020-1472 المعروف بـ Zerologon
1632026-08-04T08:00:45Zcve-2020-0688https://github.com/random-robbie/cve-2020-0688cve-2020-0688
2572026-07-29T10:33:57ZCVE-## 2019
starupdated_atnameurldes
---------------
20752026-09-01T15:26:20ZweblogicScannerhttps://github.com/0xn0ne/weblogicScannerأداة فحص ثغرات weblogic. تتضمن حالياً القدرة على كشف الثغرات التالية: CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-2018-2893、CVE-2018-2894、CVE-2018-3191、CVE-2018-3245、CVE-2018-3252、CVE-2019-2618、CVE-2019-2725、CVE-2019-2729、CVE-2019-2890、CVE-2020-2551、CVE-2020-14750、CVE-2020-14882、CVE-2020-14883
42892026-09-04T01:55:44Zexphubhttps://github.com/zhzyker/exphubExphub[مكتبة نصوص استغلال الثغرات] تتضمن نصوص استغلال ثغرات Weblogic وStruts2 وTomcat وNexus وSolr وJboss وDrupal، وأُضيفت مؤخراً CVE-2020-14882、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020-2551、CVE-2020-2555、CVE-2020-2883、CVE-2019-17558、CVE-2019-6340
18322026-09-04T16:09:45Zphuip-fpizdamhttps://github.com/neex/phuip-fpizdamاستغلال للثغرة CVE-2019-11043
11822026-09-04T00:56:48ZBlueKeephttps://github.com/Ekultek/BlueKeepإثبات مفهوم للثغرة CVE-2019-0708
4962026-09-01T03:59:50ZCVE-2019-0708https://github.com/n1xbyte/CVE-2019-0708dump
6582026-07-29T10:32:54ZCVE-2019-5736-PoChttps://github.com/Frichetten/CVE-2019-5736-PoCإثبات مفهوم للثغرة CVE-2019-5736
3882026-08-04T08:00:31ZCVE-2019-0708https://github.com/k8gege/CVE-2019-0708أداة فحص جماعي لثغرة تنفيذ التعليمات البرمجية عبر سطح المكتب البعيد 3389 CVE-2019-0708 (Rdpscan Bluekeep Check)
8212026-08-18T00:34:19Zesp32_esp8266_attackshttps://github.com/Matheus-Garbelini/esp32_esp8266_attacksإثبات مفهوم لثغرات ESP32/8266 في Wi-Fi (CVE-2019-12586, CVE-2019-12587, CVE-2019-12588)
4332026-05-23T10:50:00ZCVE-2019-2725https://github.com/lufeirider/CVE-2019-2725CVE-2019-2725 إظهار الأوامر
5732026-07-16T11:27:46Zcve-2019-19781https://github.com/trustedsec/cve-2019-19781هذه أداة نُشرت لثغرة Citrix ADC (NetScaler). نحن نكشف عنها فقط لأن آخرين نشروا كود الاستغلال أولاً.
3482026-07-29T10:33:39ZCOMahawkhttps://github.com/apt69/COMahawkتصعيد الصلاحيات: تسليح CVE-2019-1405 وCVE-2019-1322
3602026-07-29T10:33:28ZCVE-2019-11510https://github.com/projectzeroindia/CVE-2019-11510استغلال لقراءة الملفات التعسفية على Pulse Secure SSL VPN (CVE-2019-11510)
3672026-07-16T11:27:44ZCVE-2019-19781https://github.com/projectzeroindia/CVE-2019-19781استغلال تنفيذ التعليمات البرمجية عن بُعد لـ Citrix Application Delivery Controller وCitrix Gateway [ CVE-2019-19781 ]
3332026-09-01T07:22:52ZCVE-2019-13272https://github.com/jas502n/CVE-2019-13272Linux 4.10 < 5.1.17 PTRACE_TRACEME local root
6242026-07-29T10:33:33ZCVE-2019-11708https://github.com/0vercl0k/CVE-2019-11708سلسلة استغلال كاملة (CVE-2019-11708 & CVE-2019-9810) ضد Firefox على Windows 64-bit.
1292026-07-29T10:33:01ZCVE-2019-0604https://github.com/linhlhq/CVE-2019-0604CVE-2019-0604
3742026-08-18T07:57:54ZCVE-2019-18935https://github.com/noperator/CVE-2019-18935استغلال RCE لثغرة إلغاء تسلسل JSON في .NET في Telerik UI for ASP.NET AJAX.
3162026-07-29T10:32:54Zcve-2019-1003000-jenkins-rce-pochttps://github.com/adamyordan/cve-2019-1003000-jenkins-rce-pocإثبات مفهوم RCE في Jenkins: SECURITY-1266 / CVE-2019-1003000 (Script Security), CVE-2019-1003001 (Pipeline: Groovy), CVE-2019-1003002 (Pipeline: Declarative)
2392026-07-29T10:33:05ZCVE-2019-0841https://github.com/rogue-kdc/CVE-2019-0841كود إثبات مفهوم لثغرة تصعيد الصلاحيات CVE-2019-0841
2092026-08-25T09:51:16ZCVE-2019-11932https://github.com/awakened1712/CVE-2019-11932إثبات مفهوم بسيط لاستغلال ثغرة double-free في WhatsApp في DDGifSlurp في decoding.c في libpl_droidsonroids_gif
2552026-08-29T12:30:21ZCVE-2019-5786https://github.com/exodusintel/CVE-2019-5786استغلال FileReader
2672026-05-13T19:46:49ZCVE-2019-11932https://github.com/dorkerdevil/CVE-2019-11932إثبات مفهوم استغلال ثغرة double-free في WhatsApp
9212026-09-01T01:54:30Zrdpscanhttps://github.com/robertdavidgraham/rdpscanماسح سريع لثغرة CVE-2019-0708 "BlueKeep".
2932026-08-28T14:54:44Zbluekeephttps://github.com/0xeb-bp/bluekeepعمل عام للثغرة CVE-2019-0708
2492026-09-02T19:00:40ZCVE-2019-1040https://github.com/Ridter/CVE-2019-1040CVE-2019-1040 مع Exchange
6812026-07-29T10:32:53Zdirty_sockhttps://github.com/initstring/dirty_sockاستغلال تصعيد الصلاحيات في Linux عبر snapd (CVE-2019-7304)
1662026-07-29T10:33:36ZCVE-2019-7609https://github.com/LandGrey/CVE-2019-7609استغلال CVE-2019-7609 (kibana RCE) بالطريقة الصحيحة عبر نصوص python2
32025-09-14T06:41:42ZCVE-2019-0708https://github.com/victor0013/CVE-2019-0708إثبات مفهوم ماسح لثغرة CVE-2019-0708 RDP RCE
2002026-09-01T04:11:59ZCVE-2019-16098https://github.com/Barakat/CVE-2019-16098إثبات مفهوم استغلال تصعيد الصلاحيات المحلية للثغرة CVE-2019-16098
2082026-07-29T10:32:58ZCVE-2019-0192https://github.com/mpgn/CVE-2019-0192RCE على Apache Solr باستخدام إلغاء تسلسل البيانات غير الموثوقة عبر jmx.serviceUrl
starupdated_atnameurldes
20752026-09-01T15:26:20ZweblogicScannerhttps://github.com/0xn0ne/weblogicScannerأداة فحص ثغرات weblogic. تتضمن حالياً القدرة على كشف الثغرات التالية: CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-2018-2893、CVE-2018-2894、CVE-2018-3191、CVE-2018-3245、CVE-2018-3252、CVE-2019-2618、CVE-2019-2725、CVE-2019-2729、CVE-2019-2890、CVE-2020-2551、CVE-2020-14750、CVE-2020-14882、CVE-2020-14883
4992026-09-02T21:00:11ZCVE-2018-8120https://github.com/rip1s/CVE-2018-8120استغلال CVE-2018-8120 Windows LPE
4932026-08-11T09:12:24ZCVE-2018-20250https://github.com/WyAtu/CVE-2018-20250استغلال لـ https://research.checkpoint.com/extracting-code-execution-from-winrar
5342026-07-03T09:06:47ZCVE-2018-15473-Exploithttps://github.com/Rhynorater/CVE-2018-15473-Exploitاستغلال مكتوب بلغة Python للثغرة CVE-2018-15473 مع threading وصيغ التصدير
5582026-09-05T01:15:33ZCVE-2018-9995_dvr_credentialshttps://github.com/ezelf/CVE-2018-9995_dvr_credentials(CVE-2018-9995) الحصول على بيانات اعتماد DVR
3692026-07-29T10:32:50ZExchange2domainhttps://github.com/Ridter/Exchange2domainCVE-2018-8581
2532026-05-18T02:43:52ZCVE-2018-13379https://github.com/milo2012/CVE-2018-13379CVE-2018-13379
4972026-09-01T03:57:01ZCVE-2018-10933https://github.com/blacknbunny/CVE-2018-10933الوصول إلى shell دون أي بيانات اعتماد باستخدام CVE-2018-10933 (LibSSH)
2702026-07-14T20:29:03ZCVE-2018-0802https://github.com/rxwx/CVE-2018-0802إثبات مفهوم استغلال للثغرة CVE-2018-0802 (واختيارياً CVE-2017-11882)
3542026-08-13T09:14:55ZCVE-2018-7600https://github.com/a2u/CVE-2018-7600💀إثبات مفهوم للثغرة CVE-2018-7600 Drupal SA-CORE-2018-002
2932026-09-02T21:43:04ZCVE-2018-8120https://github.com/alpha1ab/CVE-2018-8120استغلال CVE-2018-8120 لـ Win2003 Win2008 WinXP Win7
4232026-09-02T11:17:08ZCVE-2018-8897https://github.com/can1357/CVE-2018-8897تنفيذ تعليمات برمجية تعسفية بصلاحيات kernel باستخدام CVE-2018-8897.
3312026-04-11T08:21:35ZCVE-2018-8581https://github.com/WyAtu/CVE-2018-8581CVE-2018-8581
5202026-08-16T20:26:51ZWinboxPoChttps://github.com/BasuCert/WinboxPoCإثبات مفهوم للثغرة الحرجة في Winbox (CVE-2018-14847)
782024-08-12T19:37:50ZCVE-2018-2628https://github.com/shengqi158/CVE-2018-2628CVE-2018-2628 & CVE-2018-2893
1462026-05-13T19:46:39ZCVE-2018-13382https://github.com/milo2012/CVE-2018-13382CVE-2018-13382
1392026-07-29T10:32:13ZCVE-2018-8174_EXPhttps://github.com/Yt1g3r/CVE-2018-8174_EXPCVE-2018-8174_python
2052026-07-29T10:32:16ZCVE-2018-0296https://github.com/yassineaboukir/CVE-2018-0296نص برمجي لاختبار ثغرة اجتياز المسار في Cisco ASA (CVE-2018-0296) واستخراج معلومات النظام.
1722025-12-24T02:23:23ZCVE-2018-3245https://github.com/pyn3rd/CVE-2018-3245CVE-2018-3245-PoC
3032026-06-06T17:24:23Zstruts-pwn_CVE-2018-11776https://github.com/mazen160/struts-pwn_CVE-2018-11776استغلال لـ Apache Struts CVE-2018-11776
1632026-07-29T10:32:10Zcve-2018-8120https://github.com/bigric3/cve-2018-8120
1402026-09-03T04:51:18ZCVE-2018-7600https://github.com/pimps/CVE-2018-7600استغلال لـ Drupal 7 <= 7.57 CVE-2018-7600
3752026-09-06T01:36:10ZGDRVLoaderhttps://github.com/zer0condition/GDRVLoaderمحمل تعريفات غير موقّعة باستخدام CVE-2018-19320
1792026-07-13T11:58:32ZCVE-2018-15982_EXPhttps://github.com/Ridter/CVE-2018-15982_EXPاستغلال CVE-2018-15982
1192026-08-01T13:49:38Zcve-2018-8453-exphttps://github.com/ze0r/cve-2018-8453-expاستغلال cve-2018-8453
1662026-07-29T10:31:41ZRTF_11882_0802https://github.com/Ridter/RTF_11882_0802إثبات مفهوم للثغرة CVE-2018-0802 وCVE-2017-11882
1672026-07-29T10:32:12ZCVE-2018-8174-msfhttps://github.com/0x09AL/CVE-2018-8174-msfCVE-2018-8174 - استغلال إفساد الذاكرة في VBScript.
2672026-07-29T10:32:00Zcredssphttps://github.com/preempt/credsspكود يوضح CVE-2018-0886
1402025-11-28T04:31:10ZCVE-2018-2894https://github.com/LandGrey/CVE-2018-2894نص فحص CVE-2018-2894 WebLogic رفع ملفات غير مقيّد يؤدي إلى RCE
6032026-09-04T17:58:20ZDrupalgeddon2https://github.com/dreadlocked/Drupalgeddon2استغلال لـ Drupal v7.x + v8.x (Drupalgeddon 2 / CVE-2018-7600 / SA-CORE-2018-002)