
struts-rce-cve-2017-9805
Go-based remote code execution tool targeting Apache Struts CVE-2017-9805 with single-target and batch-file scanning modes for automated exploitation.

Go-based remote code execution tool targeting Apache Struts CVE-2017-9805 with single-target and batch-file scanning modes for automated exploitation.

Apache OFBiz RCE Scanner & Exploit (CVE-2024-38856)

Faraday's Command Line Interface

Proof-of-concept exploit for CVE-2022-35914, a command injection vulnerability in GLPI via a third-party library script. Executes arbitrary commands…

Cobalt Strike Aggressor script that automates Windows service-account-to-SYSTEM privilege escalation via GodPotato during red team operations.

Golang reverse proxy with CobaltStrike malleable profile validation.

Tool to check if an IP of a DblTek GoIP is vulnerable to a challenge-response login system, send SMS messages from the system, execute remote…

Spring Cloud Gateway < 3.0.7 & < 3.1.1 Code Injection (RCE)

This is a proof of concept for CVE-2024-20356, a Command Injection vulnerability in Cisco's CIMC.

geoserver CVE-2024-36401漏洞利用工具

Wing FTP Server Remote Code Execution (RCE) Exploit (CVE-2025-47812)

Example of CVE-2024-24576 use case.

K23605346: BIG-IP iControl REST vulnerability CVE-2022-1388

CVE-2019-2729 Exploit Script

Command and Control server on Slack

Proof of concept exploit for CVE-2022-30525 (Zxyel firewall command injection)

Confluence Pre-Auth Remote Code Execution via OGNL Injection (CVE-2022-26134)

CVE-2022-46169 Cacti remote_agent.php Unauthenticated Command Injection.