
CVE-2023-34039
VMWare Aria Operations for Networks (vRealize Network Insight) Static SSH key RCE (CVE-2023-34039)

VMWare Aria Operations for Networks (vRealize Network Insight) Static SSH key RCE (CVE-2023-34039)

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

SSHD Based implant supporting tunneling mecanisms to reach the C2 (DNS, ICMP, HTTP Encapsulation, HTTP/Socks Proxies, UDP...)


CVE-2023-34039

VMware exploit

A complete framework for exploiting the vulnerability CVE-2025-55182

Python-based RCE exploit for CVE-2026-42588 targeting Apache ActiveMQ Jolokia. Features check-only mode, malicious XML generation, and support for…

Automated exploit for CVE-2025-66034, chaining path traversal and XML injection in fontTools varLib to achieve unauthenticated remote code execution…

Proof-of-concept exploit for CVE-2024-24824 demonstrating how an arbitrary class loading primitive can be transformed into remote code execution on…

Exploiting CVE-2014-7205 by injecting arbitrary JavaScript resulting in Remote Code Execution.

Python exploit script for CVE-2021-23369, a Remote Code Execution vulnerability in Handlebars template engine versions before 4.7.7. Accepts a target…

CVE-2022-40635: Groovy Sandbox Bypass in CrafterCMS

This POC demonstrates CVE-2025-55182 using actual `[email protected]` vulnerable code.

PHPMailer < 5.2.18 Remote Code Execution

Apache Log4j 1.2.X存在反序列化远程代码执行漏洞

Apache ShardingSphere UI YAML解析远程代码执行漏洞

Working proof of concept for NextJS RCE to establish a reverse shell. [React2Shell]