
OUned
The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning

The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning

Automated exploit and mass scanner for CVE-2026-5118, an unauthenticated privilege escalation in WordPress Divi Form Builder <=5.1.2, enabling admin…

CVE-2026-5118 – Python2 mass exploit for Divi WordPress plugin Unauthenticated administrator registration via admin-ajax.php. Multi‑threaded scanner…


Trying to tame the three-headed dog.

CVE-2025-60375 — Authentication bypass / incorrect access control in PerfexCRM < 3.3.1 (admin login)

APOLOGEE is a Python script and Metasploit module that enumerates a hidden directory on Siemens APOGEE PXC BACnet Automation Controllers (all…

Tool for Active Directory Certificate Services enumeration and abuse

Simple Dashboard <= 2.0 - Unauthenticated Privilege Escalation

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).

CVE-2023-41508 - A hard-coded password in Super Store Finder v3.6 allows attackers to access the administration panel.

An authentication bypass using an alternate path or channel in Fortinet product

Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)