
CVE-2025-59287
Exploit for CVE-2025-59287, injecting WolfShell memory webshell into WSUS servers to achieve remote code execution when the admin console is opened.

Exploit for CVE-2025-59287, injecting WolfShell memory webshell into WSUS servers to achieve remote code execution when the admin console is opened.

A Proof of Concept (PoC) exploit for CVE-2025-70886, a persistent denial-of-service vulnerability in Halo CMS (v2.22.4 and earlier) that allows…

Exploit for CVE-2023-46747, a remote code execution vulnerability in F5 BIG-IP, allowing unauthorized user creation and command execution.

Authentication Bypass in GoAnywhere MFT

Proof of Concept for CVE-2025-31161 / CVE-2025-2825


详细讲解CitrixBleed 2 — CVE-2025-5777(越界泄漏)PoC 和检测套件

Stored Cross-Site Scripting in DotNetNuke (DNN) Version before 9.4.0 | XSS to RCE

Proof-of-concept exploit for CVE-2024-4040 (CrushFTP) providing unauthenticated file read, credential decryption, and remote code execution via…

Unauthenticated remote code execution exploit for the WC Designer Pro WordPress plugin. Automates detection, file upload, and shell access via a…

CVE-2025-66398 — Signal K Server ≤ 2.18.0 RCE PoC

PoC CVE-2026-8732 (WP Maps Pro <= 6.1.0)

POC for CVE-2026-21858

In Packetfence 13.2.0, the WebGui interface setting allows authenticated remote code execution

Unverified Password Change (CWE-620)

Go-based exploit tool for CVE-2022-40684 (Fortinet authentication bypass). Automates SSH key injection for authorized penetration testing and…

CVE-2023-43148

Unauthenticated Privilege Escalation to Administrator via Role Form Field