
CVE-2021-4034-new
Exploit for CVE-2021-4034 (polkit pkexec) that provides a root shell. Includes build instructions and references the original advisory.

Exploit for CVE-2021-4034 (polkit pkexec) that provides a root shell. Includes build instructions and references the original advisory.

Exploit for CVE-2020-5902 targeting F5 BIG-IP RCE via path traversal and JDBC deserialization, enabling command execution, file read/write, and…

Exploit for CVE-2021-44667 targeting Alibaba Nacos 2.0.3, enabling unauthenticated remote code execution via a crafted request to the Derby database…

Proof-of-concept exploit for CVE-2025-5025, demonstrating the vulnerability with a Docker-based environment for testing and validation.

Exploit for CVE-2018-9995 to retrieve DVR credentials via directory traversal, with two methods for educational use.

Simple iOS bootlooper using CVE-2022-46689. Desguised as onlyfans

Ansible playbook to test remote servers for CVE-2014-6271 (Shellshock) bash vulnerability, enabling automated scanning and verification across…

CVE-2026-44963 - Draft - Veeam

PowerShell script to check Windows hotfix status for CVE-2020-0601 and detect exploitation attempts. Includes XML import for ControlUp Script-Based…

Intentionally vulnerable Next.js application demonstrating CVE-2025-29927 authentication bypass via middleware WAF evasion. Designed for security…

Samba 3.0.20

Log4j-RCE (CVE-2021-44228) Proof of Concept

A repository used for Hackthebox ServMon Machine

My Citrix ADC NetScaler CVE-2019-19781 Vulnerability DFIR notes.

A powershell script to deploy the registry mitigation key for CVE-2020-1350

This script will apply the workaround for the vulnerability CVE-2020-0796 for the SMBv3 unauthenticated RCE

Python PoC exploit for CVE-2022-25765, a critical command injection in PDFKit. Generates a reverse shell via unsanitized URL parameters passed to…

Proof-of-concept remote code execution exploit for CVE-2017-3881 affecting Cisco Catalyst switches with telnet enabled, including detailed exploit…