
CVE-2023-43872-CMSmadesimple-Arbitrary-File-Upload--XSS---File-Manager
CMSmadesimple 2.2.18 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed…

CMSmadesimple 2.2.18 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed…

WBCE 1.6.1 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will launch…

Tools and Techniques for Red Team / Penetration Testing

A tool to abuse Exchange services

Microsoft-Outlook-Remote-Code-Execution-Vulnerability

Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).


C# implementation of SMBExec for remote command execution on Windows targets using NTLM password hashes, enabling lateral movement and pass-the-hash…


Simple PoC in PowerShell for CVE-2023-23397

CPL remote trigger

CVE-2024-21413 | Microsoft Outlook Remote Code Execution Vulnerability PoC

Proof of Concept for CVE-2023-23397 in Python

The Windows Print Spooler privilege escalation vulnerability (CVE-2019-1040/CVE-2019-1019) has been implemented as a Reflective DLL for penetration…


Exploit for CVE-2021-36934