
CVE-2023-46020-Code-Projects-Blood-Bank-1.0-Stored-Cross-Site-Scripting-Vulnerability
Proof-of-concept exploit for stored cross-site scripting (XSS) vulnerability in Code-Projects Blood Bank V1.0 via unsanitized profile parameters,…

Proof-of-concept exploit for stored cross-site scripting (XSS) vulnerability in Code-Projects Blood Bank V1.0 via unsanitized profile parameters,…

110 offensive-security one-liners for authorized testing and CTFs, grouped by category and kill-chain step.

This tool is used to map out the network data flow to help penetration testers identify potentially valuable targets.

Proof-of-concept for CVE-2024-48427: SQL injection in Sourcecodester Packers and Movers Management System v1.0. Exploits the id parameter to execute…

CVE-2026-49049 Helix3 (JoomShaper) Joomla Unauthenticated AJAX RCE Scanner

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

CF Internal Link Shortcode <= 1.1.0 - Unauthenticated SQL Injection

Best house rental management system Local file contains vulnerability

School Fees Management System v1.0 - Incorrect Access Control - Directory Listing

CVE-2024-42658 An issue in wishnet Nepstech Wifi Router NTPL-XPON1GFEVN v1.0 allows a remote attacker to obtain sensitive information via the cookies…

Unauthenticated remote code execution exploit for Vehicle Management System in PHP via unrestricted file upload in newdriver.php and newvehicle.php,…

CVE-2026-37149 - SQL Injection vulnerability in the scost parameter of search_products.php in…

Privilege Escalation in Teachers Record Management System using CodeIgnitor

Technical disclosure and proof-of-concept for SQL injection in PuneethReddyHC event-management v1.0, detailing affected endpoint, payloads, and…

Best Student Management System v1.0 - Incorrect Access Control - Directory Listing

Proof-of-concept exploit for SQL injection in Code-Projects Blood Bank V1.0. Demonstrates authentication bypass and database extraction via…

Proof-of-concept exploit for CVE-2024-55457, a directory traversal in MasterSAM Star Gate v11 allowing unauthenticated arbitrary file download via…

Proof-of-concept exploit for Out-of-Band SQL injection in Code-Projects Blood Bank V1.0 via the reqid parameter, enabling database version and data…