
CVE-2024-0582
Data-only exploit for CVE-2024-0582

Data-only exploit for CVE-2024-0582

A Remote Code Execution PoC for Log4Shell (CVE-2021-44228)

Proof-of-concept exploit for CVE-2025-32433 with simulated and real attack modes, including a Flask-based C2 server for reverse shell callbacks and…

C exploit for CVE-2025-38248 supporting ROP and data-only attack techniques for binary exploitation research and vulnerability verification.

PoC exploit for CVE-2015-2291

A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.

Struts02 s2-045 exploit program

Python exploit for CVE-2026-41940, a critical CRLF injection in cPanel/WHM cpsrvd that bypasses authentication and 2FA, granting root-level access…

Proof-of-concept exploit for CVE-2026-40487, demonstrating arbitrary file upload via MIME spoofing leading to stored XSS and account takeover in…

Python exploit for CVE-2025-24076, a Windows Cross Device Service privilege escalation vulnerability. Replaces a DLL to achieve SYSTEM privileges via…

Proof-of-concept exploit for CVE-2019-7711, a format string vulnerability in Green Hills INTEGRITY RTOS. Demonstrates a full attack chain with memory…

Proof-of-concept exploit for CVE-2024-31771 demonstrating arbitrary file write in TotalAV via symbolic link attack, enabling DLL planting and SYSTEM…

Exploit vulnerable Brother printers via CVE-2017-7588, collect data, and develop custom firmware implants for attack simulation.

Python-based exploit for CVE-2018-15473, enabling SSH user enumeration via OpenSSH username validation timing attack. Updated from Python 2 to 3 for…

WebSocket and SQL Injection Exploit Script

Torrentpier v2.4.1. CVE-2024-1651. Remote Code Execution (RCE). Exploit.

Data-only local privilege escalation exploit for Linux kernel io_uring CVE-2024-0582, using sprayed file structures and ext4_file_operations hooks to…

Publicly disclosed Proof-of-Concept (POC) exploit for the [email protected] version