
CVE-2026-57517
💉 Blind SQL Injection → RCE exploit for Control Web Panel (CWP) ≤ 0.9.8.1224 — userRes POST → INTO DUMPFILE → cwpsvc shell

💉 Blind SQL Injection → RCE exploit for Control Web Panel (CWP) ≤ 0.9.8.1224 — userRes POST → INTO DUMPFILE → cwpsvc shell


Remote Code Execution for Chamilo LMS

CocoaPods RCE Vulnerability CVE-2024-38366

Proof-of-concept exploit for CVE-2024-24824 demonstrating how an arbitrary class loading primitive can be transformed into remote code execution on…

Exploit script for Apache Struts2 REST Plugin XStream RCE (CVE-2017-9805)

A PoC Exploit for CVE-2024-0757 - Insert or Embed Articulate Content into WordPress Remote Code Execution (RCE)

CVE-2017-16921: In OTRS 6.0.x up to and including 6.0.1, OTRS 5.0.x up to and including 5.0.24, and OTRS 4.0.x up to and including 4.0.26, an…

Combined PoC for CVE-2025-28434 and CVE-2025-59528

Shellshock exploitation script that is able to upload and RCE using any vector due to its versatility.

Exploit script for Apache Struts2 REST Plugin XStream RCE (CVE-2017-9805)