
CVE-2025-25198-PoC
PoC for CVE-2025-25198: automated Host header poisoning test for Mailcow - HTTPS listener, automatic cookie/CSRF handling, captures first reset link.

PoC for CVE-2025-25198: automated Host header poisoning test for Mailcow - HTTPS listener, automatic cookie/CSRF handling, captures first reset link.

CVE-2025-58434 Proof of Concept



This is an exploit for CVE-2024-23346 that acts as a "terminal" (tested on chemistry.htb)

JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfigurations (like not…

XSS via Host Header injection and Steal Password Reset Token of another user

cve-2023-22515的python利用脚本

GraphQL penetration testing tool that exploits weak rate limits and cost analysis to brute-force credentials, bypass 2FA, enumerate users, and fuzz…

CVE-2019-9053 Exploit for Python 3

CVE-2004-1769 // Mass cPanel Reset password

Remote Code Execution Vulnerability in Webmin

Weblogic Unrestricted File Upload

PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM

Facebook brute forcer script