Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/chiefyoru/exploit-cve-2026-56705
ReconnaissanceVulnerability ScannersPayload GenerationExploitationWeb Application ExploitationPenetration Testing
GitHubchiefyoru/exploit-cve-2026-56705

Exploit-CVE-2026-56705

CVE-2026-56705 — Adminer < 5.4.3 Unauthenticated RCE via MSSQL PDO DSN Injection

View Repository
1 day agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2026-56705 – Adminer MSSQL DSN Injection Mass Exploiter

𝘾𝙤𝙣𝙩𝙖𝙘𝙩: 𝙔𝙤𝙧𝙪 (يورو) 🔥 (https://t.me/ChiefYoru) — Channel (https://t.me/TeamLeets) — Group (https://t.me/ChiefYoru_PoCs)


📌 Description

This tool exploits CVE-2026-56705, an unauthenticated Remote Code Execution (RCE) vulnerability in Adminer < 5.4.3 when using the MSSQL PDO driver. By injecting a malicious DSN parameter, it writes a PHP webshell to the target server.

It includes:

  • Full Adminer discovery (common paths, sitemaps, robots, crawling, and brute‑force).
  • Version detection to skip patched installations.
  • Multi‑threaded mass exploitation.
  • Automatic webshell upload and verification.

⚙️ Features

  • 🔍 Smart Adminer endpoint discovery
  • 🧪 Version check (vulnerable if < 5.4.3)
  • 🚀 Fast threading (120 concurrent workers)
  • 📁 Saves successful shells to Pwned.txt
  • 🧹 Auto‑cleans output file at start
  • 🎨 Colorful terminal output

𝘾𝙤𝙣𝙩𝙖𝙘𝙩: 𝙔𝙤𝙧𝙪 (يورو) 🔥 (https://t.me/ChiefYoru) — Channel (https://t.me/TeamLeets) — Group (https://t.me/ChiefYoru_PoCs)

Download Tool