
cnspec
An open source, cloud-native security to protect everything from build to runtime

An open source, cloud-native security to protect everything from build to runtime

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) shares via HTTP(s)

A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY

An issue in AVG AVG Anti-Spyware v.7.5 allows an attacker to execute arbitrary code via a crafted script to the guard.exe component


Passive AD CS auditor detecting ESC1–ESC16 and Shadow Credentials via read-only LDAP/ACL/registry checks, with prioritized remediation and SIEM-ready…

HP SiteScope Credential Acquisition Tool

Intune Proactive Remediation scripts to enforce patched Adobe Acrobat/Reader versions and disable JavaScript to mitigate CVE-2026-34621 exploitation.

CVE-2025-49132

An issue in MiniTool Partition Wizard ShadowMaker v.12.7 allows an attacker to execute arbitrary code and gain privileges via the…

School Fees Management System v1.0 - Incorrect Access Control - Privilege Escalation

Best Student Management System v1.0 - Incorrect Access Control - Directory Listing

Book Store Management System v1.0 - Incorrect Access Control

CVE-2019-12409: RCE Vulnerability Due to Bad Defalut Config in Apache Solr

Insecure Folder permission that lead to privilege escalation

School Fees Management System v1.0 - Incorrect Access Control - Directory Listing

Customer Support System 1.0 - Directory Listing

These are the source codes of the Python scripts to apply the temporary protection against the CVE-2022-30190 vulnerability (Follina)