
CVE-2023-41425-WonderCMS-Authenticated-RCE
Xss injection, WonderCMS 3.2.0 -3.4.2

Xss injection, WonderCMS 3.2.0 -3.4.2

Tunnel TCP connections through a file

This project is a Python script that exploits the CVE-2023-24489 vulnerability in ShareFile. It allows remote command execution on the target server.…

On the 11/11/21 the apache 2.4.49-2.4.50 remote command execution POC has been published online and this is a loader so that you can mass exploit…

Remote Code Execution Exploit in the RPC Library

Shell Simulation over Net-SNMP with extend functionality

Now you can mirror and control your jailbroken iPhone over USB

Hooked browser communication over MQTT

Deserialization of untrusted data can occur in versions 0.17.0 to 1.14.2 of the client SDK of Allegro AI’s ClearML platform, enabling a maliciously…

Weaponized web shell

bypass all stages of the password reset flow

Adversary Emulation Framework

CVE-2026-23744 - Versions 1.4.2 and earlier of MCPJam inspector are vulnerable to remote code execution (RCE). Because the tool listens on 0.0.0.0 by…

A simple C-based vulnerability in Webmin versions 1.890 to 1.920

This is an Exploit for Unrestricted file upload in big file upload functionality in Chamilo-LMS for this location…

A remote code execution vulnerability exists in the iControl REST API feature of F5's BIG-IP product. An unauthenticated, remote attacker can exploit…

A Proof-of-concept repository showing how an untrusted MCP server can steal literally everything...

Proof-of-concept exploit for authenticated remote code execution via command injection in ProApps Enterprise Appliance ping functionality, with…