
CVE-2023-38646
Python script to exploit CVE-2023-38646 Metabase Pre-Auth RCE via SQL injection

Python script to exploit CVE-2023-38646 Metabase Pre-Auth RCE via SQL injection

PoC of SQL Injection vul(CVE-2020-9483,Apache SkyWalking)

A powershell script that prints a lot of IP and connection info to the screen

DDoS script meant to flood websites.

Really Simple Security (Free, Pro, and Pro Multisite) 9.0.0 - 9.1.1.1 - Authentication Bypass

This small script helps to avoid using MetaSploit (msfconsole) during the Enterprise pentests and OSCP-like exams. Grep included function will help…

Script that checks if the system is vulnerable to CVE-2020-0796 (SMB v3.1.1)

Automated exploit script combining CVE-2020-1472 (ZeroLogon) with evil-winrm to gain a remote shell on vulnerable Windows Domain Controllers.

Spring Framework RCE (CVE-2022-22965) Nmap (NSE) Checker (Non-Intrusive)

PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM

Apache struts struts 2 048, CVE-2017-9791.

Educational Linux privilege escalation exploit targeting CVE-2016-5195 (Dirty COW) to demonstrate kernel vulnerability exploitation and root access…

Proof-of-concept exploit for CVE-2022-0332, a SQL injection vulnerability in Moodle 3.11 to 3.11.4, with a working HTTP GET payload for…

test struts2 vulnerability CVE-2017-5638 in Mac OS X

Find exposed API keys based on RegEx and get exploitation methods for some of keys that are found

test for CVE-2018-6574: go get RCE pentesterlab

Weaponizing to get NT SYSTEM for Privileged Directory Creation Bugs with Windows Error Reporting

Exploit for CVE-2025-64512 to get a reverse shell.