
CVE-2021-33766
ProxyToken (CVE-2021-33766) : An Authentication Bypass in Microsoft Exchange Server POC exploit

ProxyToken (CVE-2021-33766) : An Authentication Bypass in Microsoft Exchange Server POC exploit

Exploit for CVE-2020-3952 in vCenter 6.7

Exploit for CVE-2020-3952 in vCenter 6.7 https://www.guardicore.com/2020/04/pwning-vmware-vcenter-cve-2020-3952/

Exploit for CVE-2022-46169

This repository details an IDOR vulnerability in AbsysNet 2.3.1, which allows a remote attacker to brute-force session IDs via the /cgi-bin/ocap/…

POC for CVE-2026-30950 which allows session hijacking in AutoGpt

Admin-only terminal bootstrap routes checked only for login state, which let a normal team member drive Coolify's realtime terminal backend and…

Utility to derive the shared secret on a JitBit Helpdesk install which can be used for authentication bypass (CVE-2017-18486)

A POC for the all new CVE-2023-27524 which allows for authentication bypass and gaining access to the admin dashboard.

Burp plugin which supports in finding privilege escalation vulnerabilities

fork of the popular jsch library

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

Apache Shiro CVE-2022-32532

Wordpress SureTriggers <= 1.0.78 - Authorization Bypass due to Missing Empty Value Check to Unauthenticated Administrative User Creation


Wordpress SureTriggers <= 1.0.78 - Authorization Bypass due to Missing Empty Value Check to Unauthenticated Administrative User Creation

Discource POC
