
cve-2018-2628
Exploit for CVE-2018-2628, a Java deserialization vulnerability in Oracle WebLogic Server, enabling remote code execution.

Exploit for CVE-2018-2628, a Java deserialization vulnerability in Oracle WebLogic Server, enabling remote code execution.

metasploit module for CVE-2013-3319 / SAP Security Note 1816536

CVE-2016-2338 Use-after-free nday full exploit

Proof-of-concept exploit for CVE-2020-1472 (ZeroLogon) that changes the domain controller's machine account password, enabling DCSync and full domain…

OS 12.0 & 12.1.2 - Jailbreak with CVE-2019-6225

Metasploit module for Apache Struts CVE-2017-9791 Remote Code Execution Vulnerability

Exploit for CVE-2021-4034 (PwnKit) that escalates privileges to root via pkexec, providing a simple shell execution.

CVE-2024-23113 是一个在 Linux Kernel 中被发现的漏洞,它属于 任意代码执行漏洞,影响了 bpf (Berkeley Packet Filter) 子系统。具体来说,这个漏洞影响了 bpf 程序的 bpf_prog 类型的对象,并且可以允许攻击者通过构造恶意的 BPF…

Dirty Pipe (CVE-2022-0847) PoC that hijacks a SUID binary to spawn. a root shell. (and attempts to restore the damaged binary as well)

For Metasploit pull request

Generates malicious RAR archives exploiting a path traversal vulnerability in unRAR to plant files at arbitrary locations, demonstrated with a Zimbra…

Log4Shell (Cve-2021-44228) Proof Of Concept

CVE-2017-7184 exp

Proof of Concept for CVE-2021-4034 (with experimental traceless exploitation)

PoC exploit for CVE-2022-1015, a Linux kernel netfilter use-after-free leading to local privilege escalation.

Metasploit auxiliary module for exploiting CVE-2023-21839 (WebLogic IIOP RCE) with DNS log verification. Automates remote code execution against…

SafeBreaches CVE-2024-49113 POC(LdapNightmare) Integrated into Metasploit

Proof-of-concept exploit for CVE-2021-4034 (PwnKit) demonstrating local privilege escalation in Polkit's pkexec, including patching instructions.