
CVE-2018-7600
Testing and exploitation tool for Drupalgeddon 2 (CVE-2018-7600)

Testing and exploitation tool for Drupalgeddon 2 (CVE-2018-7600)

PHP-based backdoor tool for remote website control via HTTP/HTTPS. Enables file management, command execution, and Tor connectivity with…

A framework for bug hunting or pentesting targeting websites that have CVE-2021-41773 Vulnerability in public

This repository details an IDOR vulnerability in AbsysNet 2.3.1, which allows a remote attacker to brute-force session IDs via the /cgi-bin/ocap/…

Highly configurable script for dictionary/spray attacks against online web applications.

Chrome extension that uses vulnerabilities CVE-2021-33044 and CVE-2021-33045 to log in to Dahua cameras without authentication.

Local file inclusion exploitation tool

CVE-2025-5777 Citrix NetScaler Memory Leak Exploit (CitrixBleed 2)

React2Shell Exploitation Tool (CVE-2025-55182)

Automatic SQL injection and database takeover tool

Automated All-in-One OS Command Injection Exploitation Tool

File upload vulnerability scanner and exploitation tool.

Security write-up for an IDOR in Concrete CMS exposing conversation ratings through missing authorization on the get_rating endpoint, with root…

CVE-2023-35078 - Ivanti MobileIron Core Remote Unauthenticated API Access Exploit tool

Proof-of-concept exploit for CVE-2026-23744, targeting /api/mcp/connect to achieve remote command execution on Linux systems via reverse shell.

Proof-of-concept exploit for CVE-2024-22514 enabling remote code execution in iSpyConnect Agent DVR 5.1.6.0 via malicious objects.xml file…


Office Anywhere网络智能办公系统