
CVE-2022-41114
Windows Bind Filter Driver Elevation of Privilege Vulnerability. CVE project by @Sn0wAlice

Windows Bind Filter Driver Elevation of Privilege Vulnerability. CVE project by @Sn0wAlice

Authenticated API Key Exposure in Nagios Log Server 2024R1.3.1

marimo is a reactive Python notebook. Prior to 0.23.0, Marimo has a Pre-Auth RCE vulnerability

This is an automated exploitation script for the Hack The Box machine *Titanic*. It extracts Gitea user hashes via LFI, assists in cracking them, and…

Suite for reverse shell handling geared toward working within the native shell

Python-based cross-referencing tool: uses Windows systeminfo and MS security bulletins to detect unpatched vulnerabilities and suggest privilege…

Proof-of-concept exploit for CVE-2025-25968, an improper access control vulnerability in DDSN Interactive cm3 Acora CMS v10.1.1. Enables…

Exploit for CVE-2017-7921 targeting Hikvision devices with improper authentication. Retrieves user lists, camera snapshots, and configuration files…

Black board CMS Escalation of Privileges

Exploit for the CVE-2024-37010: access other user's external storage & lateral movement

Shell script to detect CVE-2019-14287 sudo privilege escalation vulnerability. Scans systems for the flaw and reports affected configurations.

Post-exploitation utility that scans kernel/OS version and configuration to suggest applicable local privilege escalation exploits.

Matix Popup Builder <= 1.0.0 - Unauthenticated Arbitrary Options Update

Proof-of-concept for a stored XSS vulnerability (CVE-2021-44217) in Ericsson CodeChecker's comments component, enabling cookie theft and sensitive…

Proof-of-concept for CVE-2020-24028: authenticated privilege escalation via insecure permissions in ForLogic Qualiex v1 and v3, enabling user…

Shell script for automated enumeration of Linux systems to identify privilege escalation vectors and configuration weaknesses.

CVE-2024-57523 - CSRF Vulnerability in Users.php - SourceCodester Packers and Movers Management System 1.0

Security advisory detailing a critical authentication vulnerability (CVE-2025-4162029) in Copilot, enabling unauthorized account access via user ID…