
CVE-2022-24715
Icinga Web 2 - Authenticated Remote Code Execution <2.8.6, <2.9.6, <2.10

Icinga Web 2 - Authenticated Remote Code Execution <2.8.6, <2.9.6, <2.10
PHP reverse shell script for establishing a remote TCP connection, enabling command execution on a target web server.

CVE-2021-44228 vulnerability study

Exploit for CVE-2024-45507 with a Behinder webshell payload for remote code execution on Apache OFBiz.

Log4J exploit CVE-2021-44228

New exploit for pyLoad v0.5.0 - Unauthenticated remote code excecution

PHPFusion 9.03.50 - Remote Code Execution

Remote Code Execution (RCE) vulnerability in Apache Tomcat.

Nexus Repository Manager 3 远程命令执行漏洞(CVE-2020-11444)

test for CVE-2018-6574: go get RCE pentesterlab

Calibre Remote Code Execution


Craft CMS RCE via relational conditionals in the control panel

A webshell plugin and interactive shell for pentesting a Joomla website.

[POC] Asynchronous reverse shell using the HTTP protocol.

Python PoC for CVE-2026-102425: unauthenticated RCE in Joomla Balbooa Forms (com_baforms) via field shortcode injection in post-submission PHP…

Python PoC exploiting CVE-2025-32432, an unauthenticated RCE in Craft CMS via Yii DI gadget injection, with assetId scanning, reverse shell, and…

Exploit for CVE-2019-9810 Firefox on Windows 64-bit.