
CVE-2023-20198
Proof-of-concept exploit for CVE-2023-20198 targeting Cisco IOS XE Web UI. Enables unauthenticated remote command execution, configuration retrieval,…

Proof-of-concept exploit for CVE-2023-20198 targeting Cisco IOS XE Web UI. Enables unauthenticated remote command execution, configuration retrieval,…

PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM

QNAP N-Day (Probably not CVE-2020-2509)

PoC for CVE-2020-6207 (Missing Authentication Check in SAP Solution Manager)

Proof-of-concept exploit for CVE-2023-39362, an authenticated command injection in Cacti's SNMP options. Includes a vulnerable Docker environment for…

CVE-2023-47218: QNAP QTS and QuTS Hero Unauthenticated Command Injection (FIXED)

Exploit for CVE-2019-2725 in Oracle WebLogic Server, using crafted SOAP requests to achieve remote code execution via Java deserialization.

Shell Simulation over Net-SNMP with extend functionality

PoC exploit for CVE-2022-22947: SpEL injection in Spring Cloud Gateway enabling remote command execution via crafted Actuator API routes.

Drop-in fix for the unpatched MCP STDIO command-injection flaw (CVE-2026-30623 family)