
CVE-2021-21972
Nmap script to detect VMware vCenter Server CVE-2021-21972 RCE vulnerability by probing the uploadova endpoint and checking for vulnerable response.

Nmap script to detect VMware vCenter Server CVE-2021-21972 RCE vulnerability by probing the uploadova endpoint and checking for vulnerable response.

Python exploit for CVE-2019-19781 targeting Citrix ADC with template injection to achieve remote code execution on vulnerable gateways.

A PoC exploit for CVE-2026-24061 - GNU InetUtils telnetd Argument Injection Authentication Bypass

Python-based remote code execution exploit targeting fuel CMS 1.4.1, enabling authenticated attackers to execute arbitrary commands on vulnerable web…

Proof-of-concept exploit for CVE-2015-1635 (MS15-034), demonstrating remote code execution in HTTP.sys via crafted HTTP requests on vulnerable…

PrintNightmare - Windows Print Spooler RCE/LPE Vulnerability (CVE-2021-34527, CVE-2021-1675) proof of concept exploits

Automated Reverse Shell Exploit via WebSocket | Havoc-C2-SSRF with RCE

Working proof-of-concept exploit for CVE-2019-0708 (BlueKeep) that spawns a remote shell on vulnerable Windows systems. Run with Python 3.

Exploit for CVE-2018-10933 (LibSSH authentication bypass) enabling unauthenticated shell access to vulnerable SSH servers with version detection and…

CVE-2026-23744 - Versions 1.4.2 and earlier of MCPJam inspector are vulnerable to remote code execution (RCE). Because the tool listens on 0.0.0.0 by…

Educational proof-of-concept for CVE-2023-34468 affecting Apache NiFi. Demonstrates H2 JDBC URL abuse leading to authenticated RCE in vulnerable NiFi…

SambaCry exploit and vulnerable container (CVE-2017-7494)

Proof-of-concept exploit for CVE-2024-24824 demonstrating how an arbitrary class loading primitive can be transformed into remote code execution on…

Python exploit for GitLab CVE-2021-22205, enabling remote command execution and reverse shells on vulnerable GitLab CE/EE versions. Includes batch…

CVE-2024-48061 Langflow vulnerable to remote code execution. Poc

Gorsair gives root access on remote docker containers that expose their APIs

Proof of concept python script for regreSSHion exploit.

Exploit script for CVE-2023-46747 (F5 BIG-IP TMUI RCE) enabling unauthenticated user creation, token retrieval, and remote command execution on…