
nmap-log4shell
Nmap NSE script for detecting Apache Log4j RCE (CVE-2021-44228) by injecting JNDI exploit payloads via HTTP headers or TCP/UDP sockets across…

Nmap NSE script for detecting Apache Log4j RCE (CVE-2021-44228) by injecting JNDI exploit payloads via HTTP headers or TCP/UDP sockets across…

Single-file Python scanner for CVE-2026-48907 (Joomla JCE Editor RCE). Detects Joomla/JCE, performs intrusive math-verified payload test, supports…

Detection artifact generator for FortiWeb CVE-2025-25257, exploiting unauthenticated SQL injection to achieve remote code execution via hex-encoded…

log4J burp被扫插件、CVE-2021-44228、支持dnclog.cn和burp内置DNS、可配合JNDIExploit生成payload

Nuclei template and information about the POC for CVE-2024-25600

Python-based detection artifact generator for CVE-2025-57819, exploiting FreePBX pre-auth RCE via SQL injection and auth bypass to deploy webshells…

Automated PHP-CGI parameter injection exploit tool targeting CVE-2024-4577 and CVE-2024-8926. Supports command execution, file upload/download, WAF…

Multi-target unauthenticated RCE scanner for CVE-2025-34085 affecting WordPress Simple File List plugin. Uploads, renames, and triggers PHP webshells…

CVE-2019-16759 vbulletin 5.0.0 till 5.5.4 pre-auth rce

Burp Suite extension for automated detection and exploitation of CVE-2025-55182 Next.js RCE vulnerability with echo/DNSLog checks and memory shell…

CLI for rapidly deploying, managing, and tearing down ephemeral cloud-based penetration testing infrastructure, including VMs, C2 servers, domain…

漏洞利用,Vmware vCenter 6.5-7.0 RCE(CVE-2021-21972),上传冰蝎3,getshell

Exploitation tool for CVE-2025-55315, an HTTP request smuggling vulnerability in ASP.NET Core Kestrel. Detects vulnerable endpoints, extracts…

Burp Suite plugin for automated blind XSS detection with active and passive scanning, customizable OOB payloads, and configurable parameters for…

CVE-2025-55182 Exploit Tool – Python 2.7 exploit for Next.js prototype pollution leading to RCE

Batch detection and exploitation tool for Apache HTTP Server path traversal and RCE (CVE-2021-42013), with POC and EXP payloads for security testing.

GUI-based scanner and exploit tool for CVE-2026-42588 (ActiveMQ RCE). Supports VPS payload delivery and DNSLog-based vulnerability verification with…

CLI tool for generating SQL injection PoC requests, automating sqlmap attacks, and managing modular exploit scripts with interactive menu and…