
CVE-2024-29868
Proof of concept of CVE-2024-29868 affecting Apache StreamPipes from 0.69.0 through 0.93.0

Proof of concept of CVE-2024-29868 affecting Apache StreamPipes from 0.69.0 through 0.93.0

Demonstrates a brute-force attack bypassing two-factor authentication in Nagios Fusion due to missing rate limiting and lockout, with CVE-2025-60424…

CVE-2025-59390 and ThreadLocalRandom Inverse

Tenda AC15 cookie exposure

An issue in Silverpeas v6.4.2 and lower allows for the bypassing of password complexity requirements.

Go-based brute-force tool exploiting Bludit bruteforce mitigation bypass (CVE-2019-17240) for automated password cracking against admin login pages.

python 2.7

Python POC for CVE-2025-5095

PoC for CVE-2021-45041

Better version of rastating.github.io/bludit-brute-force-mitigation-bypass/

Bludit 3.9.2 - Remote command execution - CVE-2019-16113

Exploit for CVE-2020-15367: brute-force authentication attack against Venki Supravizio BPM 10.1.2 login page, leveraging user enumeration to gain…

Decrypts passwords stored in SOS JobScheduler (S)FTP profiles by exploiting the use of the profile name as the 3DES encryption key, enabling recovery…

This repository contains a Proof-of-Concept for the CVE-2021-41773. This CVE contains a LFI and RCE vulnerablity.

Proof-of-concept exploit for CVE-2023-34732 demonstrating authenticated function abuse in Flytxt NEON-dX to brute-force and reset user passwords,…

An issue in Silverpeas v.6.4.2 and lower allows a remote attacker to cause a denial of service via the password change function.

Exploit for CVE-2014-0195

Bludit 3.9.2 - bruteforce bypass - CVE-2019-17240