
cve-2021-29442-Nacos-Derby-rce-exp
Nacos Derby命令执行漏洞利用脚本

Nacos Derby命令执行漏洞利用脚本

PoC tool for CVE-2026-44680 affecting MikroORM ≤7.0.13. Exploits JSON path injection to extract database contents via UNION-based attacks. Features…

Penetration testing tool for Oracle Databases that discovers valid SIDs, brute-forces credentials, escalates privileges to DBA, executes system…

JumpServer is an open-source Privileged Access Management (PAM) platform that provides DevOps and IT teams with on-demand and secure access to SSH,…

This tool generates gopher link for exploiting SSRF and gaining RCE in various servers

MSDAT: Microsoft SQL Database Attacking Tool

PHP Webshell with handy features

Automated testing to find logic and performance bugs in database systems

Advanced MSSQL penetration testing tool for lateral movement, command execution, NTLM relay, and brute-force attacks via linked servers and multiple…

Deployable AWS-hosted Active Directory pentest lab with domain controller and vulnerable MSSQL; practice S4U2Self abuse, SQL brute force, and RCE.

Scanner: CVE-2026-9082 Drupal PostgreSQL SQLi via JSON:API — Python scanner for unauthenticated SQLi leading to RCE (CISA KEV)

Python PoC exploiting time-based blind SQLi in Nagios XI to extract database contents, with multithreaded binary-search extraction and CLI…

Automated SQL injection detection and exploitation tool for extracting database information from web applications, supporting multiple injection…

SolarWinds Orion Account Audit / Password Dumping Utility

(Deprecated) HQLmap, Automatic tool to exploit HQL injections

The easiest, and most secure way to access and protect all of your infrastructure.

Automated NoSQL database enumeration and web application exploitation tool.

Blind SQL Injection Tool with Golang