
CVE-2025-5777
CitrixBleed2 poc

CitrixBleed2 poc
Citrix Bleed 2 PoC Scanner (CVE-2025-5777)

Exploit scanner for CVE-2025-30208 (Vite arbitrary file read) with multi-variant bypass detection, credential harvesting, SSH key extraction, and…

Black board CMS Escalation of Privileges

Exploit for the CVE-2024-37010: access other user's external storage & lateral movement

Proof-of-concept exploit for authenticated arbitrary file read via directory traversal in WordPress Tainacan plugin (CVE-2024-7135).

Health Check & Troubleshooting <= 1.2.3 - Authenticated Path Traversal

Proof-of-concept exploit for CVE-2024-56428 that reads cleartext credentials from iLabClient's local Apache Derby database.

Proof-of-concept for CVE-2021-27187: cleartext credential storage in FX Aggregator terminal client login.sav file, enabling local credential theft…

Proof-of-concept for a stored XSS vulnerability (CVE-2021-44217) in Ericsson CodeChecker's comments component, enabling cookie theft and sensitive…

PoC for CVE-2026-85706: GitLab CE/EE unauthenticated arbitrary local file read

Tor-based leaked credential search tool that queries the pwndb2 hidden service to find emails and passwords exposed in data breaches, with wildcard…

In-depth attack surface mapping and asset discovery

Exploit tool for CVE-2026-45833 in ChromaDB, enabling malicious model generation, reconnaissance, and data exfiltration from target collections via…

Pack up to 3MB of data into a tweetable PNG polyglot file.

PowerShell tool for transferring files in restricted environments (Citrix, RDP, VNC, Guacamole) via clipboard, Base64 chunks, keystrokes, or OCR…