
CVE-2014-7205
Bassmaster Plugin NodeJS RCE

Bassmaster Plugin NodeJS RCE
This repository contains a python script that will handle the majority of the dompdf cached font exploit (CVE-2022-28368), all you need to do is…

Decrypted content of eqgrp-auction-file.tar.xz

Toolkit to weaponize Chromium vulnerabilities into reliable, cross-platform, full-chain exploits

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection

Foxit PDF Reader Remote Code Execution Exploit

Documentation and proof of concept code for CVE-2022-24125 and CVE-2022-24126.

Google Chrome CVE-2026-6307 PoC

Python exploit for Serv-U SSH vulnerability (CVE-2021-35211) with multiple payload modes: stage, exec, and download-execute, enabling shellcode…


Proof of concept python script for regreSSHion exploit.

CVE-2026-38526 exploit for Krayin CRM v2.2.x - Authenticated RCE via TinyMCE file upload bypass. Features interactive shell, multi-type payloads,…

Study of a classic stack-based buffer overflow vulnerability in a controlled lab environment for educational purposes.

https://bugs.chromium.org/p/project-zero/issues/detail?id=1820

## 在kali中自动化生成cve-2017-8570的恶意ppsx文件和配置msf监听

CVE-2025-62215: Windows Kernel Race Condition + Double-Free EoP

Microsoft-Office-Word-MSHTML-Remote-Code-Execution-Exploit

CVE-2025-3969: Exploit PoC (OS CMD injection, Web Shell, Interactive Shell)