
CVE-2018-14847
This is a proof of concept of the critical WinBox vulnerability (CVE-2018-14847) which allows for arbitrary file read of plain text passwords. The…

This is a proof of concept of the critical WinBox vulnerability (CVE-2018-14847) which allows for arbitrary file read of plain text passwords. The…

Western Digital MyCloud PR4100 Link Resolution Information Disclosure Vulnerability

This repository documents an unauthenticated GPON manipulation vulnerability discovered in certain Arcadyan routers.

Proof-of-concept exploit for CVE-2020-0796 (SMBGhost) to check remote overflow vulnerability in SMBv3.

Proof-of-concept exploit for CVE-2024-10914, a command injection vulnerability in D-Link NAS devices via the account_mgr.cgi script. Includes…

PoC exploit for CVE-2025-24071, a Windows File Explorer spoofing vulnerability that leaks NTLM hashes via malicious .library-ms files in RAR/ZIP…

Minimal test repository demonstrating Git's CVE-2017-1000117 recursive clone vulnerability for educational exploitation verification.

This repository features a Nuclei template specifically designed to detect the Path Traversal vulnerability (CVE-2025-25163) in the Plugin A/B Image…

Reproduction and fix of the CVE-2025-29927 vulnerability.

Documentation of CVE-2025-51858, a self-XSS vulnerability in ChatPlayground.ai enabling JWT theft and account hijacking, combined with an IDOR in…

A path traversal vulnerability exists in TMS Management Console

Docker-based lab environment for exploiting Apache HTTP Server 2.4.50 path traversal and RCE vulnerability (CVE-2021-42013) with automated exploit…

Exploit for CVE-2024-24919, targeting a specific vulnerability for penetration testing and security assessment purposes.

Proof-of-concept exploit for CVE-2020-14064, an incorrect access control vulnerability in Icewarp Email Server 12.3.0.1, enabling unauthorized access.

A Bash script to enumerate valid SSH usernames using the CVE-2018-15473 vulnerability. It checks for valid usernames on an OpenSSH OpenSSH 7.2p2…

Discloses CVE-2023-51127, a directory traversal vulnerability in FLIR AX8 thermal cameras allowing unauthenticated remote attackers to read arbitrary…

tar-fs file write/overwrite vulnerability

Nuclei template for CVE-2025-30208, exploiting a file read vulnerability in Vite. Includes search queries for Hunter, FOFA, and Shodan to identify…