
CVE-2020-14645
Weblogic CVE-2020-14645 UniversalExtractor JNDI injection getDatabaseMetaData()

Weblogic CVE-2020-14645 UniversalExtractor JNDI injection getDatabaseMetaData()

Proof-of-concept exploit chaining four CVEs (CVE-2023-36844-47) for pre-authentication remote code execution on Juniper JunOS SRX and EX series…

remote code execute for redis4 and redis5

Local privilege escalation exploit for Android kernel vulnerability CVE-2020-0041, with portability across devices and kernel versions.

Mac OS Trojan (RAT) made with love <3

The Poc for CVE-2024-20931

PowerShell to Slack C2


Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)

CVE-2020-8012, CVE-2016-10709, CVE-2017-17099, CVE-2017-18047, CVE-2019-1003000, CVE-2018-1999002

Exploiting CVE-2021-44228 in VMWare Horizon for remote code execution and more.

A critical vulnerability, CVE-2024-53677, has been identified in the popular Apache Struts framework, potentially allowing attackers to execute…

CVE-2018-2628 & CVE-2018-2893

Some codes for bypassing Oracle WebLogic CVE-2018-2628 patch

CVE-2018-17246 - Kibana LFI < 6.4.3 & 5.6.13

CVE-2018-8021 Proof-Of-Concept and Exploit


CVE-2017-5645 - Apache Log4j RCE due Insecure Deserialization