Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Exploits — Real world and CTFs exploiting web/binary POCs. | Kitploit
Tools/GitHubGitHub/sadfud/exploits
IoT SecurityExploitationSCADA/ICS SecurityWeb Application ExploitationCTFBinary Exploitation
GitHubsadfud/exploits

Exploits

Real world and CTFs exploiting web/binary POCs.

View Repository
79306 years agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Exploits

Real world and CTFs exploit POCs.

Real World

CVEShort descriptionExploit
CVE-2017-5343Wordpress SQL Injection[POC]
CVE-2018-8880Unauthenticated Lutron Quantum Bacnet v2 network info exfiltrationPOC
CVE-2018-11629Default and unremovable credentials in Homeworks QS Lutron integration protocol.POC
CVE-2018-11653Unauthenticated Netwave Camera information disclosure via network chipset data.POC
CVE-2018-11654Unauthenticated Netwave Camera information disclosure. Check vulnerable hosts to CVE-2018-11653POC
CVE-2018-11681Default and unremovable credentials in Radio RA 2 Lutron integration protocol.POC
CVE-2018-11682Default and unremovable credentials in Stanza Lutron integration protocol.POC
CVE-2018-12634CirCarLife Scada < v4.3 allows remote attackers to obtain sensitive information via a direct request for the html/log or services/system/info.html URI.POC
CVE-2018-16668CirCarLife Scada < v4.3 internal installation path disclosure.POC
CVE-2018-16669Due to a clear-text stored credentials, an unprivileged user can gain access to other services with higher privileges exploiting a flaw on Open Charge Point Protocol web implementation. All versions prior to <1.5.0 are vulnerable.POC

Suites

NameDescriptionPOC
Cir-PWN-lifeCir-PWN-life is proof of concept for exploiting multiple vulnerabilities affecting Circontrol products in an automated way.POC

Challenges

Download Tool
CVE-2018-16670CirCarLife Scada < v4.3 allows remote attackers to obtain the status of PLCs used at charge stations.POC
CVE-2018-16671CirCarLife Scada < v4.3 allows remote attackers to obtain software and hardware versions.POC
CVE-2018-16672CirCarLife Scada < v4.3 allows remote authenticated attackers to obtain critical details about the carge station including credentials for GPRS Router.POC
CVE-2018-7812An Information Exposure through Discrepancy vulnerability exists in the embedded web servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200.POC
TypeDescriptionLink
ARMProtostar - Stack0exploit
ARMProtostar - Stack1exploit
HTBHack the box - Frolicexploit