
CVE-2026-45156-POC
This repository contains the Proof of Concept (PoC) exploit script for CVE-2026-45156

This repository contains the Proof of Concept (PoC) exploit script for CVE-2026-45156

PoC & checker for CVE-2026-15964 - unauthenticated password change in the WordPress plugin Single Sign On For TNG <= 2.0.0 (CVSS 9.8)

Customer Assurance Operating System. Answer the security questionnaires your customers send you, once.

Cookie-based authentication vulnerability on Tk-Rt-Wr135G

libSSH-Authentication-Bypass

eScan Management Console version 14.0.1400.2281 contains privilege escalation via `GetUserCurrentPwd` function lets attackers retrieve any user's…

CVE-2026-41940 — cPanel & WHM Authentication Bypass via Session-File CRLF Injection

Python PoC for CVE-2024-36042 authentication bypass in Silverpeas < 6.3.5. Features version detection, multi-threaded user enumeration, message…

WordPress Simple Link Directory Plugin < 14.8.1 is vulnerable to a high priority Broken Authentication

# CVE-2026-44595 YAMCS Unauthorized User Enumeration via IAM API

Automated scanner & post-exploitation toolkit for CVE-2026-41940 — cPanel & WHM root authentication bypass via session-file CRLF injection

This repository details an IDOR vulnerability in AbsysNet 2.3.1, which allows a remote attacker to brute-force session IDs via the /cgi-bin/ocap/…

Exploit for CVE-2024-48322 targeting RunCodes instances. Retrieves user passwords via email inbox after authentication bypass, requiring only any…

Bot for Telegram on WooCommerce <= 1.2.4 - Authenticated (Subscriber+) Telegram Bot Token Disclosure to Authentication Bypass

Wechat Social login <= 1.3.0 - Authentication Bypass

Owa Valid Login Checker

Technical documentation and proof-of-concept for CVE-2025-20343, a high-severity denial-of-service vulnerability in Cisco ISE allowing…

Automated auth bypass exploit for CVE-2025-0316 targeting WordPress WP Directorybox Manager. Features user enumeration, proxy support,…