
eval-stdin
Automated Exploit for CVE-2017-9841 (eval-stdin.php vulnerable file)

Automated Exploit for CVE-2017-9841 (eval-stdin.php vulnerable file)
Th Shop Mania <= 1.4.9 - Authenticated (Subscriber+) Arbitrary Plugin Installation/Activation

This repository contains a Proof-of-Concept (PoC) exploit for the Baron Samedit vulnerability (CVE-2021-3156). The exploit demonstrates privilege…

Proof-of-concept exploit for CVE-2025-0117 in GlobalProtect, achieving privilege escalation to SYSTEM via a backdoored installer and DLL injection.

Proof-of-concept for Cisco AnyConnect HostScan local privilege escalation via DLL hijacking and IPC command injection, demonstrating DLL proxying to…

Exploit for CVE-2020-1472 (ZeroLogon) that changes a domain controller's machine account password, enabling DCSync and full domain compromise.…

Proof-of-concept exploit for CVE-2021-4034 (PwnKit) that escalates privileges to root via a shared library injection in polkit's pkexec.

CVE-2024-39069

Exploiting a Reflected Cross-Site Scripting (XSS) attack to create a privileged user through the Webmin's add users feature then getting a reverse…

Proof-of-concept exploit for CVE-2021-4034 (PwnKit), a local privilege escalation vulnerability in polkit's pkexec. Compiles and runs a C payload to…

Simple Dashboard <= 2.0 - Unauthenticated Privilege Escalation

PowerShell exploit for CVE-2021-1675 (PrintNightmare) performing local privilege escalation by adding a user to the local administrators group via…

Python-based proof-of-concept exploit for CVE-2023-4911 (Looney Tunables) targeting glibc dynamic loader's parse_tunables() for local privilege…

PoC for CVE-2024-23997

Proof-of-concept exploit for CVE-2024-55503, a local command injection in Termius for macOS via DYLD_INSERT_LIBRARIES, demonstrating arbitrary code…


Tools for get offsets and adding patch for support i386

Exploit for CVE-2024-22274 that creates a privileged user and spawns a root SSH shell on a target host using provided credentials.