
CVE-2019-3980-Open_Net_Admin_v18.1.1_RCE
Bash-based exploit for CVE-2019-3980 targeting OpenNetAdmin 18.1.1, delivering unauthenticated remote code execution via command injection and…

Bash-based exploit for CVE-2019-3980 targeting OpenNetAdmin 18.1.1, delivering unauthenticated remote code execution via command injection and…

Exploitation de CVE-2022-22980

Proof-of-concept exploit for Samba usermap script remote command execution (CVE-2007-2447), with reverse shell capability for controlled lab testing…

Intentionally vulnerable VM-hosted Java shop — Log4Shell (CVE-2021-44228) workshop lab (EC2 / Azure VM / GCE)

Authenticated RCE exploit PoC and vulnerability scanner for CVE-2025-68613 in n8n. Supports command execution, file operations, and reverse shell…

CVE-2021-3493 OverlayFS privilege escalation exploit framework with advanced red team features. Includes persistence mechanisms, post-exploitation…

High-fidelity RCE scanner for CVE-2025-55182 affecting Next.js RSC. Supports mass scanning, command execution, and automated recon pipelines. Built…

Proof-of-concept exploits for CVE-2022-31199, a critical .NET deserialization RCE in Netwrix Auditor. Includes Python and PowerShell scripts, payload…

Audit de sécurité Black Box d'un serveur Drupal 7. Démonstration d'une Kill Chain complète : Injection SQL (CVE-2014-3704) ➔ RCE ➔ Reverse Shell ➔…


A practical chain that starts with an innocuous PDF file and ends up in a reverse shell on an AWS EC2 instance

Educational CTF demo demonstrating command execution via Git hooks by abusing core.hooksPath in automation workflows. Highlights local hook execution…

Python-based exploit for CVE-2023-1671 with test and exploitation functions. Tests vulnerability via DNS ping, then executes arbitrary commands on…

Proof-of-concept exploit for Apache Spark command injection (CVE-2022-33891) with check and reverse shell modes, enabling authorized security testing.

Python exploit and checker script for CVE-2024-3400 Palo Alto Command Injection and Arbitrary File Creation

Python exploit for CVE-2022-36804, a command injection in Atlassian Bitbucket Server and Data Center, enabling remote code execution with read…

A POC demo on CVE-2023-38831

Detection, analysis, and response strategies for CVE-2024-3400 exploitation attempts targeting Palo Alto PAN-OS GlobalProtect portals. Includes IOCs,…