
CVE-2026-60137
wpsqli full SQLi extractor + dumper for CVE-2026-60137

wpsqli full SQLi extractor + dumper for CVE-2026-60137

This tool takes a list of default creds and tests it against a postgresql server and logs any that work and the databases it has access to.

InfluxDB CVE-2019-20933 vulnerability exploit

Exploit for CVE-2024-56429 demonstrating extraction of Apache Derby database boot password from iLabClient source code, enabling local database…

Exploit toolkit for CVE-2023-26258 targeting ArcServe backup software. Includes network scanner, credential extractor from database and registry,…

CVE-2012-2122 - MySQL Authentication Bypass

Advanced Domain Controller attack and credential analysis tool leveraging DonPAPI database

Python exploit for CVE-2019-14314: authenticated SQL injection in NextGEN Gallery 3.2.10 WordPress plugin, extracting password hashes from the…

Proof-of-concept exploit for CVE-2020-2969 targeting unauthorized access to Oracle Database password hashes. Enables security researchers to test and…

OpenSTAManager v2.9.8 and earlier contain a critical Error-Based SQL Injection vulnerability in the bulk operations handler for the Scadenzario…

ZenoMinder Blind SQL Injection PoC

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

MSDAT: Microsoft SQL Database Attacking Tool

Windows Oracle Database Attack Toolkit