
flask_appengine_redirector
Google App Engine Flask C2 redirector

Google App Engine Flask C2 redirector

Proof-of-concept exploit for CVE-2020-8515 command injection in Draytek routers. Includes automated exploitation, reverse shell delivery, and…

PoC exploit for CVE-2024-7029 in AvTech devices. Scans for vulnerable targets and provides an interactive remote shell for command execution with…

WPCargo < 6.9.0 - Unauthenticated RCE

OpenSSH ProxyCommand RCE

This exploit will attempt to execute system commands on SPIP targets.

CyberPanel authenticated RCE < 2.3.8

Reverse Shell for CVE-2022-1388

Shell-based remote code execution exploit targeting CVE-2019-19781 in Citrix Application Delivery Controller and Citrix Gateway. Executes arbitrary…

Apache OFBiz unsafe deserialization of XMLRPC arguments

Python exploit for Metabase pre-authentication remote code execution (CVE-2023-38646) with setup-token extraction and collaborator callback for…

Exploiting a Reflected Cross-Site Scripting (XSS) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

PoC exploit for CVE-2023-6019 targeting unauthenticated Remote Code Execution in Anyscale Ray Dashboard via the Jobs API. Delivers a reverse shell on…

Python exploit script for remote file read and command execution targeting Adobe ColdFusion vulnerabilities CVE-2023-26359, CVE-2023-26360, and…

CVE-2021-22986 F5 BIG-IP iControl 命令执行漏洞

OpenSTAManager v2.9.8 and earlier versions contain a critical OS Command Injection vulnerability in the P7M (signed XML) file decoding function.

Webmin <=1.920 RCE

Exploit for CVE-2024-29269 enabling unauthenticated remote command execution on TLR-2005KSH routers. Supports interactive and batch modes with…