
cve-2026-41042
Exploits unauthenticated RCE in Apache Gravitino < 1.2.1 via H2 JDBC INIT; hosts SQL/Java payloads, executes commands, and exfiltrates output over…
exploitationpayload-developmentpenetration-testing+2

Exploits unauthenticated RCE in Apache Gravitino < 1.2.1 via H2 JDBC INIT; hosts SQL/Java payloads, executes commands, and exfiltrates output over…

Reproduction of CVE-2022-39197, a remote code execution vulnerability in Cobalt Strike Beacon triggered by XSS via malformed usernames, with…

ASPX web shell with COFF loader for executing Beacon Object Files (BOFs) on target servers via a semi-interactive Python client, designed for…