
p0wny-shell
Single-file PHP shell
penetration-testingremote-access-toolweb-application-exploitation

Single-file PHP shell

A PoC Java Stager which can download, compile, and execute a Java file in memory.

Authenticated Remote Command Execution - Webmin <= 1.910

Python exploit for CVE-2022-27925 targeting Zimbra Collaboration Suite, enabling unauthenticated remote code execution and reverse shell delivery.

Exploit for CVE-2025-61882, a critical pre-auth RCE in Oracle E-Business Suite. Combines SSRF, CRLF injection, HTTP smuggling, and XSLT injection for…

Unauthenticated remote code execution exploit for Zimbra Collaboration Suite (CVE-2022-27925). Delivers a reverse shell payload to compromise…

Suite for reverse shell handling geared toward working within the native shell