
CVE-2024-50379-PoC
Batch detection script for Apache Tomcat CVE-2024-50379 race condition remote code execution vulnerability. Supports single and mass scanning via…

Batch detection script for Apache Tomcat CVE-2024-50379 race condition remote code execution vulnerability. Supports single and mass scanning via…

Proof-of-concept exploit for CVE-2022-31793 with IP/file-based target scanning, validation mode, and arbitrary file read via HTTP requests.

Ivanti EPM SQL Injection Remote Code Execution Vulnerability(Optimized version based on h3)

Exploit for CVE-2009-2265 targeting ColdFusion 8.0.1 with JSP reverse shell payload generation and automated upload.

仅仅是poc,并不是exp

Exploit for CVE-2020-1938 (Ghostcat) enabling file read and remote command execution on vulnerable Apache Tomcat servers via the AJP connector.

CVE-2024-0012批量检测脚本

CVE-2019-0708-EXP-Windows版单文件exe版,运行后直接在当前控制台反弹System权限Shell

This tool is used to map out the network data flow to help penetration testers identify potentially valuable targets.

A client and chat program for njrat 0.6.4, 0.7d, and 0.7d golden edition.

Langflow 在对用户提交的“验证代码”做 AST 解析和编译时,在未做鉴权与沙箱限制的情况下调用了 Python 的 compile()/exec()(以及在编译阶段会评估函数默认参数与装饰器),攻击者可把恶意载荷放在参数默认值或装饰器里,借此在服务器上下文中执行任意语句(反弹…

CVE-2025-1974 PoC 코드

remote code execute for redis4 and redis5

批量扫描TomcatAJP漏洞

This Rust Code is designed to check SSH servers for the CVE-2024-6387 vulnerability

Modular fuzzing framework with a DSL (HierarFlow) to compose fuzzing loops from reusable primitives. Supports AFL, libFuzzer, VUzzer, and more for…

Tomcat的文件包含及文件读取漏洞利用POC

Palo Alto Networks PAN-OS 身份验证绕过漏洞批量检测脚本(CVE-2025-0108)