
CVE-2026-24061
A PoC exploit for CVE-2026-24061 - GNU InetUtils telnetd Argument Injection Authentication Bypass

A PoC exploit for CVE-2026-24061 - GNU InetUtils telnetd Argument Injection Authentication Bypass

Proof-of-concept exploit for authenticated PHP code injection in ISPConfig <= 3.2.11, enabling remote code execution via unsanitized language file…

Native syscall shellcode injector using HellsGate/HalosGate/TartarusGate for undetectable execution, with external shellcode loading and EDR evasion…

Proof of concept python script for regreSSHion exploit.

Exploit for CVE-2015-8522 targeting Tivoli FastBack Server with stack-based buffer overflow, ASLR/DEP bypass, and automated reverse-shell…

🧙♂️ Node.js Command & Control for Script-Jacking Vulnerable Electron Applications

A simple Docker lab and Exploit setup for CVE-2021-3156 - "Baron Samedit".

Simple exploit for Easy RM to MP3 Converter 2.7.3.700 on Windows 7 32b.

Exploit for Easy File Sharing FTP Server 3.5 on Win7 32

CVE-2018-10933 very simple POC

SMTP vulnerability scanner and exploit script that checks for CVE-2024-45519 and establishes a reverse shell on vulnerable servers.

Bash proof-of-concept exploit for CVE-2020-9484 enabling remote code execution on Apache Tomcat via insecure deserialization in file uploads, with…

CVE-2013-2028 python exploit

PHP-based web shell uploader for penetration testing, enabling file upload and remote command execution on vulnerable web servers.

Unauthenticated 0-click RCE exploit for CVE-2024-50526. Exploits an arbitrary file upload vulnerability in a vulnerable WordPress form plugin to…

Testing CVE-2022-22968

Standalone C++/x86-64 assembly implementation of CVE-2026-31431 (Copyfail) for local privilege escalation. Compiles to a dependency-free binary that…

Python exploit for CVE-2007-2447 that triggers Samba username map script command injection to open a reverse shell on vulnerable targets.