
RedTeamScripts
Collection of offensive red team scripts including process termination, SPF bypass for phishing, password spraying, and ColdFusion password…

Collection of offensive red team scripts including process termination, SPF bypass for phishing, password spraying, and ColdFusion password…

Python exploit for CVE-2026-32201, a reflected XSS in Microsoft SharePoint Server, enabling unauthenticated spoofing and data modification via…

CamJacking is a tool designed for use in human penetration testing tool. It is intended to simulate potential security threats by testing the…

In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

RiteCMS 3.0 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will…

Cross Site Scripting vulnerability in mooSocial mooSocial Software v.3.1.6 allows a remote attacker to execute arbitrary code via a crafted script to…

CVE-2018-25031 tests

All-in-One WP Migration < 7.63 - Unauthenticated Reflected XSS + CSRF

Stored XSS via CSRF in Beetel 777VR1 Router

Persistent XSS on Comtrend AR-5387un router

An XSS exploitation command-line interface and payload generator.

Generate malicious PDF test files for penetration testing, bug bounty hunting, and red teaming. Tests SSRF, XSS, XXE, NTLM credential theft, and data…

PowerShell proof-of-concept for CVE-2023-23397 that exploits Outlook's ReminderSoundFile property to intercept Net-NTLMv2 hashes via SMB or WebDAV…

Additional exploits for XSS in Cisco ASA devices discovered by PTSwarm

Repository for CVE-2023-4549 vulnerability.

【Teedy 1.11】Account Takeover via XSS

Educational proof-of-concept demonstrating how to embed a Meterpreter backdoor into a PDF file exploiting CVE-2010-1240, with step-by-step Metasploit…

This repository presents a proof-of-concept of CVE-2024-50677