
CVE-2024-22274-RCE
PoC - Authenticated Remote Code Execution in VMware vCenter Server (Exploit)

PoC - Authenticated Remote Code Execution in VMware vCenter Server (Exploit)

Authenticated RCE exploit for NocoBase workflow engine sandbox escape (CVE-2026-34156). Executes arbitrary system commands via crafted workflow…

Authenticated command injection exploit for CVE-2022-36779, enabling remote code execution on vulnerable web applications.

A PoC exploit for CVE-2026-24061 - GNU InetUtils telnetd Argument Injection Authentication Bypass

Automated Reverse Shell Exploit via WebSocket | Havoc-C2-SSRF with RCE

PoC para las vulnerabilidades CVE-2020-14750 y cve-2020-14882

CVE Description

Proof-of-concept for Log4Shell (CVE-2021-44228) demonstrating remote code execution via JNDI injection, including vulnerable server setup, exploit…

Educational demonstration of CVE-2017-5123 kernel exploit, ICMP-based rootkit command-and-control, and OS command injection vulnerable web…

Tool to check if an IP of a DblTek GoIP is vulnerable to a challenge-response login system, send SMS messages from the system, execute remote…

Proof of conept to exploit vulnerable proxycommand configurations on ssh clients (CVE-2023-51385)

React2Shell-Exploit — Complete exploitation framework for CVE-2025-55182, including Python exploit, Docker vulnerable lab, Burp Suite manual and…

Python exploit for CVE-2024-55591, bypassing FortiOS authentication to execute remote commands on vulnerable FortiGate and FortiProxy devices.

Proof-of-concept exploit for CVE-2023-39362, an authenticated command injection in Cacti's SNMP options. Includes a vulnerable Docker environment for…

Scanner and exploit for CVE-2024-12986, a command injection in DrayTek Gateway Devices. Includes a Bash scanner and a Python interactive shell for…

build-script for CVE-2024-46507 and CVE-2024-46508

🧙♂️ Node.js Command & Control for Script-Jacking Vulnerable Electron Applications

Exploit and check script for CVE-2022-1388, targeting F5 BIG-IP management interface to execute commands and verify vulnerability.