
SPIP-BigUp-Unauthenticated-RCE-Exploit-CVE-2024-8517
This Python exploit targets a critical unauthenticated Remote Code Execution (RCE) vulnerability in the BigUp plugin of SPIP CMS (≤ 4.3.1, 4.2.15,…

This Python exploit targets a critical unauthenticated Remote Code Execution (RCE) vulnerability in the BigUp plugin of SPIP CMS (≤ 4.3.1, 4.2.15,…

CVE-2021-3060

SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions are 3.2.18,…

TinySHell port to SCTP

Technical write-up and proof-of-concept for CVE-2020-15778, an authenticated command injection vulnerability in OpenSSH scp (<=8.3p1) allowing remote…

Proof-of-concept exploit for CVE-2026-27475, an authenticated insecure deserialization vulnerability in SPIP 4.4.8 leading to remote code execution.

PluckCMS 4.7.20 Zip Slip vulnerability Led to RCE

Proof-of-concept exploit for unauthenticated remote code execution in SPIP < 4.2.1 via PHP object injection in the password reset form. Provides…

CVE-2020-8254: Zip Slip in Pulse Secure VPN Windows Client

CVE-2021-27928 MariaDB/MySQL-'wsrep provider' 命令注入漏洞

exploit script for CVE-2024-45436

Exploitation of a Remote Code Execution vulnerability- (CVE-2024-7954)