
CVE-2024-32002-git-rce
Proof-of-concept exploit for CVE-2024-32002, a remote code execution vulnerability in Git. Demonstrates the attack vector and provides a working…

Proof-of-concept exploit for CVE-2024-32002, a remote code execution vulnerability in Git. Demonstrates the attack vector and provides a working…

Proof-of-concept exploit for CVE-2025-8110, a command injection vulnerability in Gogs Git hook mechanism enabling remote code execution on…


Reproduction lab for CVE-2023-51385: command injection in OpenSSH ProxyCommand via malicious git submodule URLs. Step-by-step guide to verify the…

Lab environment and exploit script for CVE-2020-7246, a PHP code injection vulnerability in qdPM 9.1. Includes Docker setup and Python2-based…

Sets up a vulnerable Django web application and provides a PDF detailing exploitation of CVE-2025-64459 for security training and lab practice.

Python-based exploit for CVE-2022-1386, providing a ready-to-run script for testing and verifying the vulnerability in affected systems.

Python proof-of-concept for CVE-2025-8110, demonstrating arbitrary file write to RCE in Gogs via symlink and API, with educational lab usage.

Proof-of-concept exploit for CVE-2024-21533, an argument injection vulnerability in the ggit npm package that allows arbitrary command execution via…

Exploit for CVE-2026-3854, a remote code execution vulnerability in GitHub Enterprise Server, triggered via crafted git push options. Includes…

Reproducible lab for CVE-2026-10053 (GitLab npm package-registry path traversal -> arbitrary file write as git). Vulnerable 19.2.1 vs patched 19.2.2,…

CVE-2024-32002 RCE PoC

Proof-of-concept exploit for CVE-2022-21587 targeting Oracle E-Business Suite with file overwrite and shell creation capabilities.

Python-based exploit for CVE-2024-4577 PHP argument injection vulnerability with single-target and batch scanning capabilities.

Scans WordPress Forminator for CVE-2026-15748 unauthenticated RCE. Detects vulnerable sites, crawls forms, extracts nonces, runs safe upload tests.

Automated SQL injection exploit for CVE-2024-6043 targeting SourceCodester Best House Rental Management System. Detects vulnerable endpoint and…

Unauthenticated SQL injection exploit for WordPress versions 2.1.3 to 2.8.2, targeting the Ultimate Member plugin to extract sensitive database…