
CVE-2026-39987_PoC
A proof-of-concept for CVE-2026-39987

A proof-of-concept for CVE-2026-39987

Proof of Concept (PoC) for CVE-2022-42889 (Text4Shell) targeting Apache Commons Text versions prior to 1.10.0. This script automates Remote Code…

OpenSTAManager RCE Exploit (CVE-2026-38751)

Multi-threaded Telnet vulnerability scanner that exploits CVE-2026-24061 via environment variable injection, verifies root access, and provides an…

Proof-of-concept exploit for CVE-2020-11651, a critical remote code execution vulnerability in SaltStack, enabling unauthenticated command execution…

CVE-2026-6279

Interactive Ruby shell for authorized CVE-2025-55182 (react2shell) testing

This utility was created during research involving MCPJam v1.4.2. The application exposes an API endpoint that accepts a server configuration object.…

CVE-2024-6387 POC (Currently being edited)

VsFTPd 2.3.4 Backdoor Command Execution

A script for exploiting a vulnerability in PyTorch with subsequent RCE in library versions < 2.6.0

Manual exploit script for CVE-2004-2687 (distccd RCE) that spawns a reverse shell via netcat without Metasploit, targeting remote hosts for…

Python exploit script for CVE-2025-54123 targeting Hoverfly RCE with command execution and reverse shell capabilities for authorized security testing.

psexecsvc - a python implementation of PSExec's native service implementation

Automated Python exploit for CVE-2025-69516, an SSTI vulnerability in Tactical RMM, enabling remote code execution with a session token.

Confluence Unauth RCE (CVE-2022-26134)

This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220

CVE-2025-52691 PoC: Based on watchtowr's article WT-2026-0001 about an authentication bypass exploit, this one is a functional Python attack script.