
Rejetto-HTTP-File-Server-HFS-2.3.x---Remote-Command-Execution
CVE-2014-6287

CVE-2014-6287

Authenticated path traversal and arbitrary file write PoC exploit for Casdoor <3.54.1, enabling RCE via SSH key injection, web shell upload, or…

Page Builder CK for Joomla - Unauthenticated SSRF / Remote File Write leading to PHP execution Exploiter

Shellshock exploitation script that is able to upload and RCE using any vector due to its versatility.

PoC for CVE-2025-24893

WordPress FEUP Arbitrary File Upload Exploit (CVE-2025-2005)

CVE-2018-2628

Proof-of-concept exploit for CVE-2026-5562 targeting Kafka UI with automated reverse shell delivery via HTTP PUT request to the smartfilters API…

CVE-2026-38526 Exploit | by infrar3d

PoC for jenkins 2.63 CVE-2019-1003030

Proof-of-Concept 0day for SAP NetWeaver created by ShinyHunters

Proof-of-concept exploit and technical analysis for CVE-2026-48907, a CVSS 10.0 pre-authentication remote code execution vulnerability in the Joomla…

CVE-2024-36401 exploit with webshell-like functionality for limited environments, supporting self-signed TLS sessions and remote command execution…

Proof-of-concept exploit for CVE-2020-15916, enabling unauthorized LAN configuration changes via weak authentication bypass and payload injection.

Statamic CMS versions <4.33.0 vulnerable to "Remote Code Execution"

Impacket-based exploit for CVE-2021-1675 (PrintNightmare) enabling remote or local DLL execution on Windows Domain Controllers with SMB payload…

my extended take on Mark Brand's CVE 2016-3861 libutils bug

cve-2019-5420 POC simple ruby script