
Geoserver-CVE-2023-25157
Python-based exploit and detector for GeoServer SQL injection vulnerability CVE-2023-25157, enabling automated target scanning and exploitation.

Python-based exploit and detector for GeoServer SQL injection vulnerability CVE-2023-25157, enabling automated target scanning and exploitation.

Automated SQL injection reconnaissance tool that enumerates SSL hosts via Shodan, performs liveness checks, and runs Ghauri tests with SQLite logging.

Autonomous multi-agent system for automated penetration testing. Coordinates SPADE agents over XMPP to perform network scanning, SQL injection, and…

Unauthenticated SQL injection exploit for CVE-2024-5522 targeting WordPress HTML5 Video Player plugin. Includes automated target discovery via search…

massive SQL injection vulnerability scanner

Automated reconnaissance and exploitation framework for misconfigured Supabase instances. Features schema enumeration, Selenium-based key extraction,…

Manual black-box penetration test of hosting provider infrastructure using curl_cffi and Python. Identifies exposed databases, default credentials,…

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Multi-threaded time-based blind SQL injection exploit for CVE-2026-14762 targeting Hotel & Tourism Reservation 1.0. Enumerates databases, tables,…

Semi-passive scanner that detects Drupal installations vulnerable to CVE-2026-9082 (PostgreSQL SQL injection) via fingerprinting, version detection,…

Multi-function web security assessment tool combining XSS, SSRF, SQL injection testing, subdomain enumeration, Whois lookup, CORS and AWS S3…

Batch scanner for Joomla 3.7 SQL injection (CVE-2017-8917) using ZoomEye API to identify vulnerable targets.

WordPress Core Pre-Auth RCE — Batch Route Confusion + SQL Injection

PoC detector & safe validator for the WP2Shell WordPress vulnerability chain: CVE-2026-63030 (REST batch-route confusion) + CVE-2026-60137…

Modular WordPress pre-auth exploit framework chaining SQL injection and authentication bypass to deliver remote code execution, interactive shells,…

Scans host lists for GeoServer endpoints vulnerable to CVE-2023-25157 SQL injection, verifies exposed paths with keyword checks, and logs confirmed…

CVE-2024-3495 Country State City Dropdown CF7 <= 2.7.2 - Unauthenticated SQL Injection

Scan WordPress installations for wp2shell vulnerabilities (CVE-2026-63030 + CVE-2026-60137). Identifies full RCE and SQL injection risks across…