
AntiWeb_testing-Suite
Suite de herramientas que sacan partido del CVE-2017-9097 (+RCE)

Suite de herramientas que sacan partido del CVE-2017-9097 (+RCE)

unauthenticated RCE in WordPress core (CVE-2026-63030 + CVE-2026-60137)

SAP Netweaver Login Bruteforcer.

Exploit for CVE-2024-28999 SolarWinds Platform Race Condition Vulnerability - login page

Unauthenticated Privilege Escalation via Account Takeover

Automated exploit chain for CVE-2026-63030 / CVE-2026-60137 — unauthenticated blind SQLi via WordPress REST batch route-confusion. Dumps user hashes,…

CVE-2023-6654 EXP


This repository contains a Proof of Concept (PoC) Python script for CVE-2025-58434, which enables attackers to change passwords of other users…

Exploit for the vulnerability of Ultimate Member Plugin.

CVE-2025-14998 Wordpress Plugin - Branda – White Label & Branding, Free Login Page Customizer <= 3.4.24 - Unauthenticated Privilege Escalation via…

Python exploit script for CVE-2025-10658: brute-forces 6-digit OTP in WordPress SupportCandy guest login to achieve full account takeover via…

Bludit 3.9.2 - Auth Bruteforce Bypass CVE:2019-17240 Refurbish In bash

Proof-of-concept exploit for CVE-2024-21413, a Microsoft Outlook remote code execution vulnerability. Demonstrates NTLM credential leakage and RCE…

There is a SQL injection vulnerability in the backend of Ruoyi v4.8.3

Exploit for CVE-2025-2011

eventin <= 4.0.34 - privilege escalation via user email change / account takeover for authenticated contributor+

CVE-2025-4094 – WordPress Digits Plugin < 8.4.6.1 - OTP Authentication Bypass