
PrivExchange
Exchange your privileges for Domain Admin privs by abusing Exchange

Exchange your privileges for Domain Admin privs by abusing Exchange

Certighost POC

A tool to spray Shadow Credentials across an entire domain in hopes of abusing long forgotten GenericWrite/GenericAll DACLs over other objects in the…

PolicyKit CVE-2021-3560 Exploit (Authentication Agent)


The vulnerability allowed a low-privileged user to escalate privileges to domain administrator in a default Active Directory environment with the…

SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery plugin for WordPress; SMS Alert <3.9.6; Unauthenticated Privilege Escalation…

一键枚举所有用户名以及写入SSH公钥

POC for CVE-2025-4404

exploiting CVE-2025-27007, a critical unauthenticated privilege escalation vulnerability in the OttoKit (formerly SureTriggers) WordPress plugin

[CVE-2020-1472] Netlogon Remote Protocol Call (MS-NRPC) Privilege Escalation (Zerologon)

Authenticated Vertical Privilege Escalation Vulnerability in Blood Donor Management System

Cookie Information | Free GDPR Consent Solution <= 2.0.22 - Authenticated (Subscriber+) Arbitrary Options Update

Opal Estate Pro <= 1.7.5 - Unauthenticated Privilege Escalation

Advanced Custom Fields: Extended <= 0.9.2.5 - Unauthenticated Privilege Escalation via Validation Bypass to '_acf_post_id' Parameter

CVE-2026-11551: Branda Plugin - Unauthenticated Privilege Escalation via Account Takeover

CVE-2023-41508 - A hard-coded password in Super Store Finder v3.6 allows attackers to access the administration panel.

CVE-2025-60375 — Authentication bypass / incorrect access control in PerfexCRM < 3.3.1 (admin login)