
CVE-2023-6875
CVE-2023-6875 exploit written for Xakep.Ru

CVE-2023-6875 exploit written for Xakep.Ru

CVE-2024-28000 LiteSpeed Cache Privilege Escalation Scan&Exp

D-LINK ROUTER "MODEL NO: DIR-615" with "FIRMWARE VERSION:20.10" & "HARDWARE VERSION:T1

Python POC for CVE-2025-5095

Python3 exploit for CVE-2019-9053 (CMS Made Simple <= 2.2.9 SQLi). No deps, time-based blind SQLi → admin creds dump. HTB Writeup owned.

Unauthenticated Privilege Escalation to Administrator via Role Form Field

Professional JWT security testing toolkit. Analyze, crack, forge, and exploit JSON Web Tokens with 15+ vulnerability checks, 100k secret wordlist,…

Demonstrates a brute-force attack bypassing two-factor authentication in Nagios Fusion due to missing rate limiting and lockout, with CVE-2025-60424…

cve-2016-16113

CMS Made Simple < 2.2.10 - SQL Injection . Actual working version

Proof-of-concept exploit for CVE-2025-60787, an OS command injection in motionEye v0.43.1b4, enabling remote code execution via crafted…

PoC for CVE-2021-45041

Better version of rastating.github.io/bludit-brute-force-mitigation-bypass/

Python Hacking Tool for Hackers And Spammers

Blind SQL injection brute force.

Exploit for CVE-2020-15367: brute-force authentication attack against Venki Supravizio BPM 10.1.2 login page, leveraging user enumeration to gain…

Bludit 3.9.2 - Remote command execution - CVE-2019-16113

Python script that brute-forces Ghost CMS credentials, then checks for CVE-2024-23724 and generates an SVG exploit payload for confirmed vulnerable…