
MultiExploit
CVE-2023-21173 Exploit - Remote Code Execution in SQL Server 2022

CVE-2023-21173 Exploit - Remote Code Execution in SQL Server 2022
MS-NRPC (Microsoft NetLogon Remote Protocol)/CVE-2020-1472

CVE-2022-46169 Cacti remote_agent.php Unauthenticated Command Injection.





The script in this repository only checks whether the vulnerabilities specified in the Ivanti Connect Secure product exist.

IBM Langflow Unauthenticated RCE via Auto-Login Bypass

PoC for CVE-2025-5777 – Auth Bypass and RCE in Trend Micro Apex Central



eMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Deletion

eMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Read

Weaponizing DCOM for NTLM Authentication Coercions

A script that exploits SaltStack CVE-2020-11651 and CVE-2020-11652 to add new users to a vulnerable Salt master by injecting entries into /etc/passwd…