
OnlyOffice-path-traversal
CVE-2023-46988: ONLYOFFICE Path Traversal Exploit

CVE-2023-46988: ONLYOFFICE Path Traversal Exploit

bash script for automated discovery and exploitation of machines with the CVE-2022-39986 vulnerability

Joomla! < 4.2.8 - Unauthenticated information disclosure exploit

CVE-2024–27630 Reference

Unauthenticated Sensitive Information Disclosure

Check if a username is valid on the SSH server by attempting an authentication. The server response will indicate whether the username exists.

An information disclosure vulnerability that could be exploited to read arbitrary files from a server when parsing an image in Image Magic.

Reflected Cross Site Scripting (XSS) in Intermesh BV Group-Office version 6.6.145, allows attackers to gain escalated privileges and gain sensitive…

Proof-of-concept exploit for unauthenticated SQL injection in Online-Food-Ordering-Web-App, demonstrating login bypass and error/time-based blind…

Python exploit script for CVE-2024-39719, a file existence disclosure vulnerability in Ollama. Tests API endpoints to detect server file paths,…

Users of JetBrains IDEs at risk of GitHub access token compromise (CVE-2024-37051)

Documentation of CVE-2025-28074: a reflected Cross-Site Scripting (XSS) vulnerability in phpList 3.6.3 due to improper input sanitization in lt.php,…

An access control flaw was identified, potentially leading to unauthorized access to critical webservice endpoints within Joomla! CMS versions 4.0.0…

Log4Shell (CVE-2021-44228) is a zero-day vulnerability in Log4j

SSH username enumeration exploit targeting OpenSSH 2.3 through 7.7 (CVE-2018-15473). Enumerates valid users individually or from a wordlist via a…

cve-2017-5487 wp rest api 취약점

Linux ve Unix sistemlerinizin CVE-2024-47076 açığından etkilenip etkilenmediğini bu script ile öğrenebilirsiniz.

This script will inform the user if the Confluence instance is vulnerable, but it will not proceed with the exploitation steps.