
vcenter_saml_login
A tool to extract the IdP cert from vCenter backups and log in as Administrator

A tool to extract the IdP cert from vCenter backups and log in as Administrator

A exploit tool for Grafana Unauthorized arbitrary file reading vulnerability (CVE-2021-43798), it can burst plugins / extract secret_key / decrypt…

Script to test for Cisco ASA path traversal vulnerability (CVE-2018-0296) and extract system information.

Bash script exploiting CVE-2018-9995 to extract credentials from vulnerable DVRs via web interface, supporting multiple DVR brands for automated…

Test CVE-2018-0296 and extract usernames

Extract payload URLs from Follina (CVE-2022-30190) docx and rtf files

This script demonstrates a time-based blind SQL injection on Moodle platforms, exploiting response delays to extract data.

An exploitation tool to extract passwords using CVE-2015-5995.

This project will help to test the Log4j CVE-2021-44228 vulnerability.

CVE-2023-38035 Recon oriented exploit, extract company name contact information

is a PoC tool designed to exploit insecurely exposed debug logs from WordPress sites and extract session cookies

Automated 8-phase exploit for CVE-2026-8732, an unauthenticated privilege escalation in WP Maps Pro ≤ 6.1.0. Uses multiprocessing and asyncio to scan…

CVE-2022-34265 Vulnerability

Exploit script for WordPress Plugin Mail Masta 1.0 - CVE-2016-10956

This repository includes two PoC scripts for CVE-2025-57819 in FreePBX: one to create a new admin user (poc_admin.py), and another to extract…

This Proof of Concept (PoC) demonstrates an exploit for CVE-2024-42009, leveraging a cross-site scripting (XSS) vulnerability to extract emails from…

