
V3n0M-Scanner
Popular Pentesting scanner in Python3.6 for SQLi/XSS/LFI/RFI and other Vulns

Popular Pentesting scanner in Python3.6 for SQLi/XSS/LFI/RFI and other Vulns

PHP Webshell with handy features

POCs to demonstrate CVE-2026-42167 in ProFTPD

Multithreaded Plugin based vulnerability scanner for mass detection of web-based applications vulnerabilities

Wing FTP Server RCE via Lua Injection

Exploits by 1N3 @CrowdShield @xer0dayz @XeroSecurity

Exploit and scanner for CVE-2025-47812 targeting Wing FTP Server unauthenticated remote code execution, supporting single-target, mass scanning,…

CVE-2026-44403-WingFTP-v8.1.2-POC-Exploit

Python exploit for CVE-2025-47812, achieving remote code execution on Wing FTP Server via Lua injection in the login username parameter. Supports…

RCE for WingFTP v4.7.3

From-scratch exploit development in Python. No Metasploit. No frameworks. Raw socket-level implementation of real CVEs against authorized lab targets.

Detection for CVE-2025-34299

Dockerized exploit environment for CVE-2015-3306 (ProFTPD copy_file_range) with FTP and HTTP services for penetration testing and vulnerability…

Um script automatizado melhorando o exploit do cve-2011-0762 postado no exploit-db

CVE-2019-3396 confluence SSTI RCE

Unauthenticated remote code execution exploit for Wing FTP Server < 7.4.4, enabling command execution and reverse shells via Lua injection in session…

Unauthenticated remote code execution exploit for Wing FTP Server (CVE-2025-47812) with multiple reverse shell payloads, interactive and CLI modes,…

A proof of concept for CVE-2025-31161, using mangled HTTP header to perform unauthenticated impersonation of any user in Crush FTP server.