
Rocket-Chat-3.12.1-PoC-CVE-2021-22911-
Proof-of-concept exploit for CVE-2021-22911 targeting Rocket.Chat 3.12.1. Automates privilege escalation from low-privileged user to administrator…

Proof-of-concept exploit for CVE-2021-22911 targeting Rocket.Chat 3.12.1. Automates privilege escalation from low-privileged user to administrator…

This is a PoC for CVE-2023-27372 and spawns a fully interactive shell.

Setting up POC for CVE-2021-26084


Updated exploit for CVE-2021-22911 (Rocket.Chat 3.12.1 - NoSQL Injection to RCE (Unauthenticated))

WonderCMS RCE CVE-2023-41425

Python exploit for CVE-2024-21413, a Microsoft Outlook remote code execution vulnerability. Sends a crafted email via SMTP to trigger code execution…

Proof-of-concept exploit for CVE-2022-28117 enabling arbitrary file read via file:/// URI scheme in Navigate CMS, with authentication support.

CVE-2021-46362: FreeMarker Server-Side Template Injection in Magnolia CMS

This Tool Aims to Exploit the CVE-2018-13341

Grow by Tradedoubler < 2.0.22 - Unauthenticated LFI

CVE-2018-5354

Survey XSS combined with CSRF leads to Admin Account Takeover in Concrete5 8.5.4

cve-2023-22515的python利用脚本


Command line tool to fetch, decode, brute-force and craft session cookies of a Flask application by guessing secret keys.

tomcat自动化漏洞扫描利用工具,支持批量弱口令检测、后台部署war包getshell、CVE-2017-12615 文件上传、CVE-2020-1938/CNVD-2020-10487 文件包含

CrackerJack / Hashcat Web Interface / Context Information Security