
CVE-2023-26039
CVE-2023-26039 - ZoneMinder. Any authenticated user can construct an api command to execute any shell command as the web user.

CVE-2023-26039 - ZoneMinder. Any authenticated user can construct an api command to execute any shell command as the web user.

Apache Struts 2.0 RCE vulnerability - Allows an attacker to inject OS commands into a web application through the content-type header

CVE Description

Automatic SSTI detection tool with interactive interface

OpenPLC 3 WebServer Authenticated Remote Code Execution.

Remote Desktop Protocol .NET Console Application for Authenticated Command Execution

React Shell & Next.js RSC Exploit Tool (CVE-2025-55182)

Proof of Concept of CVE-2022-30190

A webshell framework for penetration testers.

An open source swiss army knife for arbitrary communication over application protocols

Webshell, Virtual Private Server (VPS) and cPanel Database

PowerShell Runspace Post Exploitation Toolkit

C# console application for post-exploitation and red team operations, integrating SharpSploit to execute Mimikatz commands, perform Kerberoasting,…

An interactive CLI application for interacting with authenticated Jupyter instances.

flask heroku C2 redirector template

Objective: Demonstrate the exploitation of the Log4Shell vulnerability (CVE-2021-44228) within a simulated banking application environment.

Educational exploit for CVE-2022-30190 (Follina) demonstrating MSDT remote code execution via malicious Office documents, with detection and…

.NET/PowerShell/VBA Offensive Security Obfuscator