
CVE-2025-8088-Multi-Document
Exploit systems using older WinRAR without knowing their username (unlike other projects)

Exploit systems using older WinRAR without knowing their username (unlike other projects)

Proof-of-concept exploit for CVE-2025-57819 in FreePBX: SQL injection in the AJAX API to execute arbitrary PHP, create a persistent webshell, and…

WinRAR < 7.13 path traversal for persistency

Remote Code Execution Exploit for Langflow (CVE-2025-3248) - [ By S4Tech ]

PoC CVE-2025-49144

Exploitation for CVE-2024-49019

CVE-2025-2539 - File Away WordPress Plugin Arbitrary File Read

Comprehensive Penetration Testing report and exploit chain for Metasploitable 2 focusing on CVE-2011-2523.




HP Slate 7 2800 Android 4.1.1 rooting kit using CVE-2015-1805.

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…