
CVE-2020-1472-LAB
Lab environment and Python script to test the ZeroLogon (CVE-2020-1472) Netlogon authentication bypass vulnerability against a Windows Server 2019…

Lab environment and Python script to test the ZeroLogon (CVE-2020-1472) Netlogon authentication bypass vulnerability against a Windows Server 2019…

Python script exploiting CVE-2019-9978 to execute arbitrary commands on vulnerable WordPress Social Warfare plugin installations, for CTF challenges…

A simple python script to exploit CVE-2021-31630 on HTB WifineticTwo CTF

A python script for digital image steganography using Fast Fourier Transform.

A write up on the TryHackMe room Source & a python script to exploit the vulnerability

Python exploit script for CVE-2025-59528, an authenticated RCE vulnerability in Flowise AI application (<=3.0.5). Designed for penetration testing…

Python exploit script for CVE-2021-21315 targeting the systeminformation npm package, enabling command injection via crafted payloads for CTF and…

Python exploit for CVE-2019-7214 targeting .NET deserialization in SmarterMail to deliver a PowerShell reverse shell over TCP.

CVE-2017-8917 SQL injection Vulnerability in Joomla! 3.7.0 exploit

Unauthenticated SQL Injection exploit for WordPress Likes and Dislikes Plugin ≤ 1.0.0

Python exploit script for CVE-2023-33733 targeting web applications. Automates authentication, session extraction, and reverse shell delivery for…

Python exploit script for CVE-2025-66034 targeting Variatype on Hackthebox, providing initial access via command injection and base64-encoded reverse…

A Python automation script for exploiting the **js2py Sandbox Escape** vulnerability (CVE-2024-28397). This tool automates the payload generation and…

Python automation script that reproduces CVE-2022-22963, a critical SpEL injection in Spring Cloud Function, enabling reverse shell in authorized lab…

Automated exploit chain for HTB Sau — CVE-2023-27163 (SSRF) + Maltrail Unauthenticated RCE → Reverse Shell

📂 Grafana LFI Exploit (CVE-2021-43798). Extracción automatizada de credenciales y configuración. 🕵️

Proof-of-Concept exploit script for Xdebug 2.5.5 and earlier versions (CVE-2015-10141).