
XSS-LOADER
Xss Payload Generator ~ Xss Scanner ~ Xss Dork Finder

Xss Payload Generator ~ Xss Scanner ~ Xss Dork Finder

Proof-of-concept exploit for FoxCMS v1.2.5 remote code execution via the index.html component, with FOFA dork for target discovery.

Exploit For: CVE-2024-36840: SQL Injection Vulnerability in Boelter Blue System Management (Version 1.3)

CVE-2024-10914_Manual testing with burpsuite

Exploit for CVE-2024-29269 enabling unauthenticated OS command injection on TLR-2005KSH routers, with integrated reconnaissance dork queries for…

Exploit for CVE-2024-7954, an unauthenticated remote code execution in SPIP's porte_plume plugin, with a Nuclei template and Shodan dork for…

CVE-2024-4879 & CVE-2024-5217 ServiceNow RCE Scanning Using Nuclei & Shodan Dork to find it.

Advanced dork Search & Mass Exploit Scanner

CVE-2024-4956 : Nexus Repository Manager 3 poc exploit

Exploit for JetBrains TeamCity authentication bypass (CVE-2024-27198/27199) enabling remote code execution. Includes dork queries for asset discovery…

Reflected cross-site scripting (XSS) proof-of-concept exploit for CVE-2023-29808 targeting the /index.php?map=overview&findme= endpoint in cmaps…

Proof-of-concept exploit for CVE-2023-29809: unauthenticated SQL injection in cmaps booking system. Demonstrates time-based blind injection and…

Proof-of-concept for CVE-2023-29983: stored cross-site scripting via unsanitized token parameter in cmaps auditlog, enabling admin cookie theft.

CVE-2017-9833 POC

Exploit for CVE-2022-26138, a SAML SSO bypass vulnerability in Atlassian products, with a FOFA dork for identifying vulnerable instances.

Proof-of-concept exploit for CVE-2022-22954, a remote code execution vulnerability in VMware Workspace ONE Access via SSTI injection. Includes Shodan…

CVE-2022-1388

Python exploit for CVE-2022-23131 targeting Zabbix SAML SSO authentication bypass. Includes Shodan and FOFA dorks for vulnerable instance discovery.