
cve-2021-26084-confluence
A quick and dirty PoC of cve-2021-26084 as none of the existing ones worked for me.

A quick and dirty PoC of cve-2021-26084 as none of the existing ones worked for me.

Full penetration test report against `IP` (Ubuntu VM). Attack chain: directory enumeration → backup file discovery → password cracking → CMS file…

PoC for CVE-2023-32749 affecting Pydio Cells

Proof-of-concept scanner that checks hosts for CVE-2021-41773 Apache path traversal vulnerability, reporting vulnerable or not vulnerable status.

Python exploit for CVE-2008-4687 targeting remote code execution in MantisBT via crafted sort parameter in manage_proj_page.php.

Dockerized Spring Boot service intentionally vulnerable to Log4Shell (CVE-2021-44228) for testing detection tools, payloads, and exploit capabilities…

Quick and dirty CVE-2021-38647 (Omigod) exploit written in Go.

A little Python tool for exploiting CVE-2015-1560 and CVE-2015-1561. Quick'n'dirty. Real dirty.

An intentionally vulnerable webapp to get your hands dirty with CVE-2022-42889.

Educational documentation for exploiting CVE-2022-1329 in WordPress/Elementor and using Dirty Pipe (CVE-2022-0847) to escalate privileges on Ubuntu…

Quick and dirty .py for checking (CVE-2015-1635) MS15-034 + DoS attack option

Quick and dirty bruteforcer for CVE-2018-7669 (Directory Traversal Vulnerability in Sitecore)

Proof-of-concept exploit for CVE-2019-11043, a PHP remote code execution vulnerability in FPM/FastCGI, enabling unauthenticated RCE via crafted path…