
CVE-2019-11395
Python exploit for CVE-2019-11395, a buffer overflow in MailCarrier 2.51 POP3 service. Generates a reverse shell payload via msfvenom and achieves…

Python exploit for CVE-2019-11395, a buffer overflow in MailCarrier 2.51 POP3 service. Generates a reverse shell payload via msfvenom and achieves…

Exploit scripts for WonderCMS 4.3.2 that chain XSS to RCE by injecting a crafted theme payload and triggering a reverse shell from the admin session.

Simple exploit for Easy RM to MP3 Converter 2.7.3.700 on Windows 7 32b.

Demonstrates a DLL hijacking vulnerability in iFood Order Manager, allowing arbitrary code execution via a malicious d3d12.dll, with a…

Exploit for Easy File Sharing FTP Server 3.5 on Win7 32

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode in…

Exploit for CVE-2023-4220, a file upload vulnerability in Chamilo LMS <= 1.11.24, enabling remote code execution via webshell upload and reverse…

Python exploit for vsFTPd 2.3.4 backdoor (CVE-2011-2523) that triggers an interactive shell on port 6200 for remote command execution.

Python-based proof-of-concept exploit for CVE-2023-4911 (Looney Tunables) targeting glibc dynamic loader's parse_tunables() for local privilege…

This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220

An issue in Clementine v.1.3.1 allows a local attacker to execute arbitrary code via a crafted DLL file (DLL Hijacking)

Go-based exploit for CVE-2025-32433 that delivers a remote bash shell by exploiting a pre-authentication SSH protocol flaw in Erlang OTP SSH…

Automated exploit for CVE-2024-23741 targeting Hyper on macOS. Validates vulnerability and injects code to spawn a remote shell via RunAsNode and…

Automated exploit for CVE-2024-23740 targeting Kap on macOS. Injects code via RunAsNode and enableNodeClilnspectArguments to spawn a remote shell.

Assembly-based privilege escalation exploit for CVE-2021-3156 (Baron Samedit) targeting sudo on Ubuntu 20.04. Includes shellcode payload and…

Exploit toolkit for CVE-2018-1000001 (realpath buffer underflow) providing offset calculation, stack analysis, and LD_PRELOAD-based patching for i386…

Proof-of-concept exploit for Apache Tomcat CVE-2025-24813, demonstrating remote code execution via partial PUT and deserialization. Includes Docker…

Python exploit for CVE-2019-11447 that uploads a PHP reverse shell to CuteNews 2.1.2, enabling remote command execution on vulnerable web…