
smbtakeover
BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions

BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions


CVE-2023-7028

👻 CVE-2026-54121 - Best CertiGhost AD CS Multi-Exploit Framework | Advanced toolkit with rogue DC/LDAP servers, certificate abuse, PKINIT hash…

CVE-2026-20896 Gitea Docker X-WEBAUTH-USER auth bypass checker

👾 CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework ⚡Bash & Python versions. Features: --detect safe check, --exploit…

CVE-2026-41452 — Krayin CRM unauth installer bypass (X-Requested-With) → admin takeover. Verified: overwrite + login on 2.2.4, blocked on 2.2.5

WP Maps Pro <= 6.1.0 - Unauthenticated Privilege Escalation via Administrator Account Creation to wpgmp_temp_access_ajax AJAX Action

[CVE-2020-14882] Oracle WebLogic Server Authentication Bypass

This repository contains the Proof of Concept (PoC) exploit script for CVE-2026-45156

PoC exploit for CVE-2026-2991 — authentication bypass in KiviCare WordPress plugin (≤4.1.2) allowing unauthenticated patient account takeover and…

The forgot-password endpoint in Flowise returns sensitive information including a valid password reset tempToken without authentication or…

Unauthenticated administrator takeover exploit for CVE-2026-66012 using MCP missing authorization to exfiltrate credentials and achieve remote code…

Flynax Bridge <= 2.2.0 - Unauthenticated Privilege Escalation via Account Takeover

WordPress CVE-2024-10924 Exploit for Really Simple Security plugin

PoC & checker for CVE-2026-15964 - unauthenticated password change in the WordPress plugin Single Sign On For TNG <= 2.0.0 (CVSS 9.8)

Docker lab reproducing CVE-2026-71362 Magento/Adobe Commerce account takeover via customer-session identity switch, with PoC and official-patch A/B/A…

CVE-2025-31161