
CVE-2025-49132
Minimal proof-of-concept exploit for CVE-2025-49132 in Pterodactyl panels; reads PHP files to extract database credentials and enable unauthorized…

Minimal proof-of-concept exploit for CVE-2025-49132 in Pterodactyl panels; reads PHP files to extract database credentials and enable unauthorized…


A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

This tool takes a list of default creds and tests it against a postgresql server and logs any that work and the databases it has access to.

This tool generates gopher link for exploiting SSRF and gaining RCE in various servers

Rogue-MySql-Server

SQLWinds - SQL Server Security Assessment & Post-Exploitation Toolkit

Desc "CVE-2026-8053 CHECKER"-20260518-16h30-GMT+7

SQLC2 is a PowerShell script for deploying and managing a command and control system that uses SQL Server as both the control server and the agent.

CVE-2025-14847 – MongoDB Unauthenticated Memory‑Leak Exploit

CVE-2021-27928-POC

CVE-2025-14847 MongoBleed - MongoDB Memory Leak Vulnerability PoC

Advanced PostgreSQL database enumeration tool exploiting CVE-2024-39309 in Parse Server - Comprehensive SQL injection exploitation for security…

CVE-2023-21173 Exploit - Remote Code Execution in SQL Server 2022

An input validation vulnerability in Apache Superset allows an authenticated attacker to create a MariaDB connection with local_infile enabled,…

CVE-2025-14847 | MongoBleed vulnerability proof of concept project

CVE-2024-34693: Server Arbitrary File Read in Apache Superset

PostgreSQL Remote Code Executuon