
LongBow
CVE-2023-31756 Proof of Concept - Remote Code Execution for Archer V1/V2 Routers

CVE-2023-31756 Proof of Concept - Remote Code Execution for Archer V1/V2 Routers

psexecsvc - a python implementation of PSExec's native service implementation

A proof-of-concept for CVE-2026-39987

Python exploit for Samba 3.0.20-3.0.25rc3 'username map script' command injection, providing unauthenticated remote code execution and reverse shell.

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)

This is a script written in Python that allows the exploitation of the Metabase's software security flaw described in CVE-2023-38646.

CVE-2023-38646 Unauthenticated RCE vulnerability in Metabase

Proof-of-concept exploit for CVE-2024-6387 (regreSSHion) targeting unauthenticated remote code execution in OpenSSH server via signal handler race…

Grafana RCE exploit (CVE-2024-9264)

CVE-2019–15107 - Unauthenticated RCE Webmin <=1.920

This Python script exploits CVE-2025-3248 to execute arbitrary commands or spawn a reverse shell on a vulnerable system. Authentication is required…

CVE-2018-10933

CVE-2024-21887 Exploitation with Ngrok Reverse Shell

Manual exploit script for CVE-2004-2687 (distccd RCE) that spawns a reverse shell via netcat without Metasploit, targeting remote hosts for…

CVE-2025-52691 PoC: Based on watchtowr's article WT-2026-0001 about an authentication bypass exploit, this one is a functional Python attack script.

This script is a custom security tool designed to test for a critical pre-authentication vulnerability in systems running Erlang-based SSH servers

Proof of Concept for Authenticated RCE in Crafty Controller <= 4.6.1

Automated Python exploit for Camaleon CMS arbitrary file upload vulnerability (CVE-2024-46986). Supports reverse shell and command execution payloads…