
CVE-2024-3400
Proof-of-concept exploit for CVE-2024-3400, demonstrating command injection in Palo Alto PAN-OS with a Python-based backdoor, persistence via…

Proof-of-concept exploit for CVE-2024-3400, demonstrating command injection in Palo Alto PAN-OS with a Python-based backdoor, persistence via…

Proof-of-concept exploit for CVE-2020-8289 demonstrating remote code execution as SYSTEM/root via Backblaze backup client's SSL verification bypass…

CVE-2022-28118

A client and chat program for njrat 0.6.4, 0.7d, and 0.7d golden edition.

Proof-of-concept exploit for CVE-2025-57819 in FreePBX: SQL injection in the AJAX API to execute arbitrary PHP, create a persistent webshell, and…

CVE-2025-54123 Hoverfly Authenticated Middleware Command Injection RCE

Go-based proof-of-concept for CVE-2025-55182, a critical RCE in React Server Components. Features vulnerability checking, command execution, memory…

Remote Code Execution Exploit for Langflow (CVE-2025-3248) - [ By S4Tech ]

CVE-2026-48908 - SP Page Builder Joomla Unauthenticated RCE

CVE-2026-33017 - Langflow Unauthenticated RCE Exploit

CVE-2022-31814 Exploitation Toolkit.

Unauthenticated RCE in dedoc/scramble — PoC, Nmap NSE & Nuclei template.

Copy Fail - CVE-2026-31431 - Hardened C implementation for redteam and authorized penetration testing operations. ⚠️ Legal Notice: This tool is…

Multi-CVE exploit tool for pre-auth remote code execution on Ivanti Sentry and FortiSandbox. Features interactive shell, webshell deployment,…

Powershell-C2

This repository details CVE-2020-6650, a vulnerability I discovered within Eaton's UPS Companion. All users should upgrade to v1.06 immediately or…

Unauthenticated SQL Injection to Remote Code Execution in FreePBX — CVE-2025-57819

CVE-2024-49375、CVE-2021-42556、CVE-2021-41127