
PySQLRecon
Offensive MSSQL toolkit written in Python, based off SQLRecon

Offensive MSSQL toolkit written in Python, based off SQLRecon

Ghost CMS Content API Blind SQL Injection

Authenticated SQL Injection Vulnerability in VTiger Open Source CRM v7.5

EPICOR HCM Unauthenticated Blind SQL Injection CVE-2025-22953

Customer Support System 1.0 - SQL Injection Vulnerability in manage_department.php via "id" URL Parameter

Customer Support System 1.0 - SQL Injection Vulnerability in edit_customer via "id" URL Parameter

MongoBleed: CVE-2025-14847 Memory Leak Discovery Tool

Proof-of-concept exploit for CVE-2022-22980 targeting Spring Data MongoDB. Demonstrates remote code execution via crafted MongoDB queries. Requires…

Deployable AWS-hosted Active Directory pentest lab with domain controller and vulnerable MSSQL; practice S4U2Self abuse, SQL brute force, and RCE.

CVE-2025-14847 (MongoBleed)

MongoBleed CVE-2025-14847 Vulnerability Checker

CVE-2022-37203 POC

CVE-2022-37206 POC

CVE-2016-4999

Time-based blind SQL injection proof-of-concept for LiteLLM v1.65.4. Exploits the `/key/block` endpoint to extract database contents and read server…

SQL Injection in 3CX CRM Integration

Proof-of-concept for CVE-2024-48427: SQL injection in Sourcecodester Packers and Movers Management System v1.0. Exploits the id parameter to execute…

Local CVE/CPE vulnerability database with search, ranking, web interface, and API for offline vulnerability analysis and management.