
Metasploit-Wordpress-Canto-Exploit-RCE
this is a metasploit exploit module for CVE-2024-25096 and CVE-2023-3452

this is a metasploit exploit module for CVE-2024-25096 and CVE-2023-3452

Refurbish


Perform With Massive Juniper Remote Code Execution

A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker…


The vulnerability allows an attacker with network access to an Erlang/OTP SSH server to execute arbitrary code without prior authentication.

CVE-2020-9992 - A design flaw in MobileDevice.framework/Xcode and iOS/iPadOS/tvOS Development Tools allows an attacker in the same network to gain…

This vulnerability is of the "double-free" type, which occurs during the processing of key exchange (KEX) algorithms in OpenSSH. A "double-free"…

PoC for CVE-2024-5633


This script exploits the file upload feature in Pluck CMS v4.7.18 to upload a malicious PHP file, enabling remote access via a reverse shell. Once…

The `swp_debug` parameter in `admin-post.php` allows remote attackers to include external files containing malicious PHP code, which are evaluated on…

Stack-based buffer overflow in the server in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.12 allows remote attackers to cause a denial of…

CVE-2025-66398 — Signal K Server ≤ 2.18.0 RCE PoC

Covert C2 framework using QR codes for indirect command execution and result retrieval via HTTP/S, designed for stealthy penetration testing and red…

CVE-2023-30459

A PoC for CVE-2025-24813