
CVE-2020-3452
CVE-2020-3452 exploit
Tools for testing, exploiting, and securing web applications and APIs.

CVE-2020-3452 exploit

Password Lense: reveal character types in a password

spring-core单个图形化利用工具,CVE-2022-22965及修复方案已出


ExtendedMacro - BurpSuite plugin providing extended macro functionality

Login Area Finder: scans host/s for login panels


Mitigate CVE-2018-6389 WordPress load-scripts / load-styles attacks

CVE-2021-26855, also known as Proxylogon, is a server-side request forgery (SSRF) vulnerability in Exchange that allows an attacker to send arbitrary…

Proof-of-concept exploit for CVE-2025-2304, a mass assignment vulnerability in Camaleon CMS < 2.9.1 allowing authenticated privilege escalation to…


Exploitation Script for CVE-2020-0688 "Microsoft Exchange default MachineKeySection deserialize vulnerability"

Quick One Line Powershell scripts to detect for webshells, possible zips, and logs.

Exploit for CVE-2025-32429 – SQLi in XWiki REST API (getdeleteddocuments.vm).

DO NOT RUN THIS.


RCE against WordPress 4.6; Python port of https://exploitbox.io/vuln/WordPress-Exploit-4-6-RCE-CODE-EXEC-CVE-2016-10033.html