
CVE-2021-44909
orangescrum 1.8.0 - Remote Command Execution RCE (unauthenticated)

orangescrum 1.8.0 - Remote Command Execution RCE (unauthenticated)

Icinga Web 2 - Authenticated Remote Code Execution <2.8.6, <2.9.6, <2.10

Esto es una prueba de concepto propia i basica de la vulneravilidad CVE-2019-12840 la qual te da un RCE en root

CVE-2007-2447 exploit written in python to get reverse shell

An exploit to get root in vsftpd 2.3.4 (CVE-2011-2523) written in python

WordPress Hash Form – Drag & Drop Form Builder <= 1.1.0 - Unauthenticated Arbitrary File Upload to Remote Code Execution

PHP CGI Parameter Injection Vulnerability (RCE: Remote Code Execution)

Exploit scripts for WonderCMS 4.3.2 that chain XSS to RCE by injecting a crafted theme payload and triggering a reverse shell from the admin session.

Exploit for CVE-2023-4220, a file upload vulnerability in Chamilo LMS <= 1.11.24, enabling remote code execution via webshell upload and reverse…

Python exploit for vsFTPd 2.3.4 backdoor (CVE-2011-2523) that triggers an interactive shell on port 6200 for remote command execution.

Python exploit for CVE-2017-12617, a critical RCE in Apache Tomcat with HTTP PUT enabled. Scans targets, creates webshells, and provides remote shell…

Exploit hecho en python para vsftpd 2.3.4 | CVE-2011-2523

Python exploit script for CVE-2023-422 enabling unauthenticated remote code execution on Chamilo LMS via file upload and reverse shell delivery.

[CVE-2014-6271] Apache Shellshock Remote Command Injection tool for quick reverse shell and file browsing

Proof-of-concept exploit for vsFTPd 2.3.4 backdoor (CVE-2011-2523). Executes remote command injection on target host via port 21.

Go-based exploit for CVE-2025-32433 that delivers a remote bash shell by exploiting a pre-authentication SSH protocol flaw in Erlang OTP SSH…

Script-based Log4Shell (CVE-2021-44228) exploit toolkit with LDAP server setup, JNDI payload injection via HTTP headers, and reverse shell listener…

PoC exploit for CVE-2023-38646, a pre-authentication RCE in Metabase. Includes a reverse shell payload generator with base64 encoding fix for…