
CVE-2015-8562
Joomla 1.5 - 3.4.5 Object Injection RCE X-Forwarded-For header

Joomla 1.5 - 3.4.5 Object Injection RCE X-Forwarded-For header

Detector + root-cause analysis for CVE-2026-72898 (Metabase unauthenticated SQLi via reset_password)

Python exploit for CVE-2015-1579 targeting WordPress Slider Revolution <= 4.1.4, allowing remote file disclosure. Usage: python3 xpl.py --url=target.

CVE-2026-23744 RCE + Privilege Escalation

CVE-2024-6387-nmap

CVE-2019-17621 DLink_RCE

Exploit POC for CVE-2022-0824

Fully LLM generated exploit for CVE-2026-31431, written in C

Proof-of-concept exploit for CVE-2021-4034 (PwnKit) that escalates privileges to root on vulnerable Linux systems.

Exploit for CVE-2021-3036, HTTP Smuggling + buffer overflow in PanOS 8.x

PoC CVE-2025-55182

Sorumluluk Reddi Kendi sorumluluğunuzda kullanın, size ait olmayan veya tarama izninizin olmadığı altyapılarda gerçekleştireceğiniz yasa dışı…

RCE Chamilo 1.11.24

TP-Link Tapo c200 ver <1.1.15 - Remote Code Execution (RCE)

Proof-of-concept exploit for CVE-2024-45590, demonstrating unauthenticated remote code execution in a WordPress plugin via arbitrary file upload.…

CVE-2023-3452 exploit for WordPress Canto plugin RCE, HTTPS support included

Una CTF, in formato DSP-compliant, basata sulla CVE-2025-29927 di nextjs.

Dockerized vulnerable Telnet service for testing CVE-2026-24061, providing a controlled environment for vulnerability validation and security…