
CVE-2020-5902
CVE-2020-5902

CVE-2020-5902
Combined PoCs for rConfig: SQL Injection (CVE-2020-10220) & Command Injection (CVE-2020-10879)

CVE-2025-32433 Summary and Attack Overview

CVE-2025-64155-hunter

Educational exploit implementation for CVE-2007-2447 Samba 3.0.20-3.0.25rc username map script command execution vulnerability with Python SMB client…

Python exploit for Moodle Evil Teacher vulnerability (CVE-2018-1133) enabling authenticated remote command execution with proxy support.

CVE-2021-42559: Command Injection via Configurations in MITRE Caldera

Atlassian's Confluence Server and Data Center editions (Vulnerable Version > 7.18.1)


Detailed CVE-2025-25706 proof-of-concept demonstrating authenticated remote code execution via command injection in ProApps ping functionality,…

Modero AMX Code Execution (CVE-2019–11224)

Proof-of-concept exploit for CVE-2023-27532 enabling remote command execution with local system privileges on Veeam Backup & Replication servers.

Proof-of-concept for Log4Shell (CVE-2021-44228) demonstrating remote code execution via JNDI injection, including vulnerable server setup, exploit…

Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C

Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltration

A PoC backdoor that uses Gmail as a C&C server

Framework for Man-In-The-Middle attacks