


MS17-010_CVE-2017-0143

Remote Code Execution via Use-After-Free in JScript.dll (CVE-2025-30397)

spring4shell | CVE-2022-22965

Authenticated remote code execution exploit for PlaySMS 1.4 via CSV phonebook upload. Provides single-command and interactive shell modes for…

MS Word MS WordPad via IE VBS Engine RCE

Shellcodes for Windows >= 11 x64

A proof-of-concept exploit for CVE-2025-32433, a critical vulnerability in Erlang's SSH library that allows pre-authenticated code execution via…

Standalone proof-of-concept exploit for CVE-2023-37903 that triggers the targeted vulnerability and establishes a reverse shell.

CVE-2026-48908 — PoC exploit for unauthenticated RCE in SP Page Builder (Joomla) via arbitrary file upload. Multi‑threaded, case‑bypass, shell…

CVE-2014-6287

Python exploit for CVE-2022-22963 (Spring4Shell) targeting Spring Cloud Function RCE. Automates reverse shell delivery via wget and bash one-liner…

CVE-2024-36401 exploit with webshell-like functionality for limited environments, supporting self-signed TLS sessions and remote command execution…

coldfusion exploit based on https://cvedetails.com/cve/CVE-2009-2265/

Testing CVE-2022-22968

Proof-of-concept buffer overflow exploit for Sync Breeze Enterprise v10.0.28 (CVE-2017-14980). Sends crafted HTTP POST payload to overwrite EIP and…

VulnCheck CVE-2025-55182 react2shell

CVE-2023-46604-RCE exploit with Linux reverse shell payload