Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2026-87930 — Joomla multi-CVE RCE suite with seven exploit modules for Balbooa Forms, Page Builder CK, SP Page Builder, JCE, iCagenda, Helix3, and SP LMS, plus x7-panel.php payload deployment. | Kitploit
Tools/GitHubGitHub/winrarzipsexploit/cve-2026-87930
Vulnerability ScannersPayload GenerationExploitationScripting & AutomationWeb Application ExploitationPost-ExploitationWeb SecurityPenetration TestingRed Teaming
Remote Access Tool
GitHubwinrarzipsexploit/cve-2026-87930

CVE-2026-87930

Joomla multi-CVE RCE suite with seven exploit modules for Balbooa Forms, Page Builder CK, SP Page Builder, JCE, iCagenda, Helix3, and SP LMS, plus x7-panel.php payload deployment.

View Repository
114 days agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share



🌐 Language / Dil

Türkçe English

📌 Özet

Joomla Multi-CVE Suite — 7 zafiyet modülü + x7-panel.php deploy

CVEEklenti
CVE-2026-56291Balbooa Forms (com_baforms)
CVE-2026-56290Page Builder CK (com_pagebuilderck)
CVE-2026-48908SP Page Builder (com_sppagebuilder)
CVE-2026-48907JCE (com_jce)
CVE-2026-48939iCagenda (com_icagenda)
CVE-2026-49049Helix3 (plg_ajax_helix3)
CVE-2026-48909SP LMS (com_splms) — Joomla < 5.2.2 + --splms-path

Suite otomatik zincir çalıştırır; tek modül için --cve kullan.

📦 Kurulum

git clone https://github.com/winrarzipsexploit/CVE-2026-87930.git
cd CVE-2026-87930
pip install -r requirements.txt
DosyaGörev
winrarzips_brand.pyCMD banner (by winrarzips)
joomla_exploits.py7-CVE exploit modülleri
CVE-2026-Joomla-Suite.pyBatch + tek hedef CLI
payloads/x7-panel.phpRCE panel
requirements.txtBağımlılıklar

❌ Hedef listesi, tarama sonucu ve panel URL'leri repo'da yok.

🎯 Tek hedef

python CVE-2026-Joomla-Suite.py -u https://LAB-URL --fingerprint
python CVE-2026-Joomla-Suite.py -u https://LAB-URL --yes
python CVE-2026-Joomla-Suite.py -u https://LAB-URL --yes --cve CVE-2026-48908

📦 Toplu (kendi listende)

python CVE-2026-Joomla-Suite.py -f targets.txt --yes --threads 8

🔧 SP LMS (48909)

Joomla < 5.2.2 hedeflerde sunucu yolu gerekir:

python CVE-2026-Joomla-Suite.py -u https://LAB-URL --yes --cve CVE-2026-48909 --splms-path /var/www/html/tmp/x7-panel.php

📌 Summary

Joomla Multi-CVE Suite — 7 vulnerability modules + x7-panel.php deploy

CVEExtension
CVE-2026-56291Balbooa Forms (com_baforms)
CVE-2026-56290Page Builder CK (com_pagebuilderck)
CVE-2026-48908SP Page Builder (com_sppagebuilder)
CVE-2026-48907JCE (com_jce)
CVE-2026-48939iCagenda (com_icagenda)
CVE-2026-49049Helix3 (plg_ajax_helix3)
CVE-2026-48909SP LMS (com_splms) — Joomla < 5.2.2 + --splms-path

The suite runs an auto chain by default; use --cve for a single module.

📦 Setup

git clone https://github.com/winrarzipsexploit/CVE-2026-87930.git
cd CVE-2026-87930
pip install -r requirements.txt
FileRole
winrarzips_brand.pyCMD banner (by winrarzips)
joomla_exploits.py7-CVE exploit modules
CVE-2026-Joomla-Suite.pyBatch + single-target CLI
payloads/x7-panel.phpRCE panel payload
requirements.txtDependencies

❌ Target lists, scan results and live panel URLs are not included.

🎯 Single target

python CVE-2026-Joomla-Suite.py -u https://LAB-URL --fingerprint
python CVE-2026-Joomla-Suite.py -u https://LAB-URL --yes
python CVE-2026-Joomla-Suite.py -u https://LAB-URL --yes --cve CVE-2026-48908

📦 Batch (your own list)

python CVE-2026-Joomla-Suite.py -f targets.txt --yes --threads 8

🔧 SP LMS (48909)

For Joomla < 5.2.2 targets, provide server path:

python CVE-2026-Joomla-Suite.py -u https://LAB-URL --yes --cve CVE-2026-48909 --splms-path /var/www/html/tmp/x7-panel.php

⚠️ Authorized testing / lab use only · Yalnızca yetkili test


Telegram



Download Tool