
ShatteredFTP
Shattered is a tool and POC for the new CrushedFTP vulns, CVE Exploit Script: CVE-2025-2825 vs CVE-2025-31161

Shattered is a tool and POC for the new CrushedFTP vulns, CVE Exploit Script: CVE-2025-2825 vs CVE-2025-31161

Proof-of-concept exploit for CVE-2020-6519 - a Chromium zero-day that fully bypasses Content Security Policy (CSP) across platforms, enabling script…

Remote privilege escalation exploit for CVE-2018-1049 targeting VyOS via SSH-based command injection in a sudo-permitted Perl script, granting root…

This simple but powerful script will introduce a new type of malware that will turn off the firewall, start an HTTP server, forward its port through…

GitLab 12.9.0 Arbitrary File Read

CutePHP Cute News 2.1.2 RCE PoC

Python PoC exploit scripts for CVE-2023-43208 and CVE-2023-37679, enabling unauthenticated remote code execution in NextGen Mirth Connect. Designed…

CVE-2024-7593 Ivanti Virtual Traffic Manager 22.2R1 / 22.7R2 Admin Panel Authentication Bypass PoC [EXPLOIT]

ShadowRay RCE POC (CVE-2023-48022)

MindsDB Path Traversal to RCE PoC

Python exploit for Craft CMS CVE-2023-41892 Remote Code Execution vulnerability, delivering a PHP reverse shell for authorized penetration testing.

SPIP CVE-2023-27372 Unauthenticated RCE Exploit (Web Shell Upload)

CVE-2024-32002 是 Git 中的一个严重漏洞,允许攻击者在用户执行 git clone 操作时远程执行任意代码(RCE)。

Python exploit for CVE-2022-1388, an unauthenticated remote command execution vulnerability in F5 BIG-IP iControl REST. Supports single commands and…


Proof-of-concept exploit for CVE-2026-23744, demonstrating unauthenticated remote code execution in MCPJam Inspector versions up to 1.4.2 via crafted…

This is a script written in Python that allows the exploitation of the Metabase's software security flaw described in CVE-2023-38646.

This is a script written in Python that allows the exploitation of the Zoneminder's security flaw described in CVE-2023-26035.