
CVE-2018-10933
CVE-2018-10933 very simple POC

CVE-2018-10933 very simple POC

Python exploit for CVE-2018-10933 that bypasses libssh server authentication and spawns an unauthenticated shell on vulnerable SSH servers.

Really Simple Security (Free, Pro, and Pro Multisite) 9.0.0 - 9.1.1.1 - Authentication Bypass

This is a tool for exploiting Ticketbleed (CVE-2016-9244) vulnerability.

Python-based exploit for CVE-2017-8056 targeting XML-RPC denial-of-service vulnerability in web applications.

test for CVE-2018-6574: go get RCE pentesterlab

This script allows for remote code execution (RCE) on Oracle WebLogic Server

Exploit script for CVE-2025-50946

Remote shell on CVE-2009-4623

This small script helps to avoid using MetaSploit (msfconsole) during the Enterprise pentests and OSCP-like exams. Grep included function will help…

Exploiting a Reflected Cross-Site Scripting (XSS) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

CVE-2022-0847 Python exploit to get root or write a no write permission, immutable or read-only mounted file.

Exploiting a Cross-site request forgery (CSRF) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

Exploiting a Cross-site request forgery (CSRF) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

Repo that the MS15-011 exploit clones to get required files. Avoids having to download all files from exploit_dev.

Exploiting a Cross-site request forgery (CSRF) attack to get a Command Injection through the Webmin's File Manager feature

This is just a quick note on how to exploit these vulnerabilities to get root.

Exploiting a Cross-site request forgery (CSRF) attack to get a Command Injetion through the Webmin's Upload and Download feature