
CVE-2026-5465
Exploit and analysis for CVE-2026-5465, an IDOR in Amelia WordPress plugin allowing authenticated Provider role to escalate privileges and achieve…

Exploit and analysis for CVE-2026-5465, an IDOR in Amelia WordPress plugin allowing authenticated Provider role to escalate privileges and achieve…

Repository contains psexec, which will help to exploit the forgotten pipe

Mogwai Java Management Extensions (JMX) Exploitation Toolkit

HP SiteScope Credential Acquisition Tool

A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY

The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning

DJ-Classifieds Joomla Component Unauthenticated File Upload RCE. 3-string filter bypass via PHP short tags. CVSS 10.0 | CWE-434 | com_djclassifieds <…

CVE-2025-60375 — Authentication bypass / incorrect access control in PerfexCRM < 3.3.1 (admin login)

CVE-2026-0827 PoC

CVE-2023-41508 - A hard-coded password in Super Store Finder v3.6 allows attackers to access the administration panel.

nameko Arbitrary code execution due to YAML deserialization

mjml-app v3.0.4 & 3.1.0-beta RCE exploit

CVE-2021-46075 - A Privilege Escalation vulnerability exists in Sourcecodester Vehicle Service Management System 1.0. Staff account users can access…

CVE-2022-25943

Insecure Folder permission that lead to privilege escalation

Proof-of-concept for CVE-2025-57392 demonstrating insecure default file permissions in BenimPOS Desktop V3.0, enabling privilege escalation via…

HyperComments <= 1.2.2 - Unauthenticated (Subscriber+) Arbitrary Options Update

PoC of CVE-2025-46203