
CVE-2020-1472
Python exploit for CVE-2020-1472 (Netlogon Elevation of Privilege) targeting domain controllers to achieve full domain compromise.

Python exploit for CVE-2020-1472 (Netlogon Elevation of Privilege) targeting domain controllers to achieve full domain compromise.

Metasploit module for CVE-2025-24071 - Windows NTLM Hash Leak via .library-ms

Proof-of-concept exploit for CVE-2021-4034, a local privilege escalation in polkit's pkexec, demonstrating exploitation with simple C helpers and a…

nginx CVE scanner + RCE exploit framework (CVE-2026-42945 + 16 others)

This is an implementation of the CVE-2020-0796 aka SMBGhost vulnerability, compatible with the Metasploit Framework

Exploit for CVE-2022-1329, a WordPress Elementor plugin RCE vulnerability, allowing authenticated users to upload and execute arbitrary PHP files via…

Framework for generating shellcode and exploit payloads, designed for penetration testing and security research to automate payload creation and…

CVE-2021-21972 Unauthorized RCE in VMware vCenter metasploit exploit script

Python exploit for CVE-2018-2628 targeting Oracle WebLogic Server deserialization vulnerability. Provides remote code execution against unpatched…

Exploit for CVE-2021-1675 (PrintNightmare) enabling local and remote SYSTEM-level privilege escalation on Windows via the Print Spooler service.…

Exploit for CVE-2018-3252 targeting WebLogic deserialization vulnerability. Includes payload generation with ysoserial and a Python proof-of-concept…

initial exploit for CVE-2019-0708, BlueKeep CVE-2019-0708 BlueKeep RDP Remote Windows Kernel Use After Free The RDP termdd.sys driver improperly…

Annotated FBI exploit for the Tor Browser Bundle from mid-2013 (CVE-2013-1690)

Proof-of-concept exploit for CVE-2022-30333 path traversal in unRAR, generating malicious .rar files to plant payloads at arbitrary locations.…

CVE-2019-0708-EXP(MSF) Vulnerability exploit program for cve-2019-0708

Metasploit-Framework modules (scanner and exploit) for the CVE-2021-41773 and CVE-2021-42013 (Path Traversal in Apache 2.4.49/2.4.50)

Exploit for CVE-2017-7269, a buffer overflow in IIS 6.0 WebDAV, enabling remote code execution. Designed for use with Metasploit in penetration…

Proof-of-concept exploit for CVE-2026-41651, a Linux local privilege escalation vulnerability in Pack2 software, demonstrating root access and system…