
CVE-2013-1081
Novell ZENworks Mobile Management - LFI RCE

Novell ZENworks Mobile Management - LFI RCE

Proof-of-concept exploit for CVE-2024-6387 (regreSSHion) targeting unauthenticated remote code execution in OpenSSH server via signal handler race…

CVE-2024-6387 POC (Currently being edited)

Proof-of-concept exploit for CVE-2024-21413, a Microsoft Outlook remote code execution vulnerability. Demonstrates NTLM credential leakage and RCE…

Proof-of-concept exploit for CVE-2025-55182, a critical RCE vulnerability in Next.js Server Actions. Exploits insecure deserialization in the React…

Exploit for CVE-2024-6232 - Python Tarfile Realpath Overflow

Automated exploit for CVE-2024-415770: leverages SSRF to achieve RCE, registers an agent on the teamserver, opens a socket, and injects an SSH key…

Bash exploit for CVE-2025-24893, unauthenticated RCE in XWiki Platform, using template injection in the SolrSearch macro to execute arbitrary system…

Demonstrating Remote Code Execution Vulnerability via Pickle Serialization in ClearML

WordPress RomethemeKit For Elementor Plugin <= 1.5.4 is vulnerable to Remote Code Execution (RCE)

This Python script exploits a vulnerability (CVE-2024-21388) in Microsoft Edge, allowing silent installation of browser extensions with elevated…

This Python script exploits CVE-2025-3248 to execute arbitrary commands or spawn a reverse shell on a vulnerable system. Authentication is required…

This simple but powerful script will introduce a new type of malware that will turn off the firewall, start an HTTP server, forward its port through…

Python script for exploiting command injection in Open PLC Webserver v3

Shattered is a tool and POC for the new CrushedFTP vulns, CVE Exploit Script: CVE-2025-2825 vs CVE-2025-31161

Python exploit script for CVE-2023-25581, achieving remote code execution via deserialization of Base64-encoded data in pac4j-core.

MindsDB Path Traversal to RCE PoC

Microsoft Windows - 'srv2.sys' SMB Code Execution (Python) (MS09-050)