
CVE-2024-27198-EXPLOIT
A PoC exploit for CVE-2024-27198 - JetBrains TeamCity Authentication Bypass

A PoC exploit for CVE-2024-27198 - JetBrains TeamCity Authentication Bypass

A scanner for the FortiNet vulnerability CVE-2025-64446

[漏洞复现] 全球首款基于RSC特性能绕过WAF检测的CVE-2025-55182 React Server RCE 漏洞 EXP。

Python proof-of-concept demonstrating an authentication bypass in pac4j JWT by crafting a JWE token with an unsigned inner JWT, allowing privilege…

Veeam Backup Enterprise Manager Authentication Bypass (CVE-2024-29849)

Proof-of-concept exploit for CVE-2026-25924, demonstrating administrative remote code execution in Kanboard through a missing access control check on…

New nuclei CVE

PoC for CVE-2022-46169 - Unauthenticated RCE on Cacti <= 1.2.22

A new approach to Browser In The Browser (BITB) without the use of iframes, allowing the bypass of traditional framebusters implemented by login…

Go-based proof-of-concept exploit for CVE-2022-23131, a Zabbix SAML authentication bypass. Enables unauthorized admin access by forging SAML…

CVE-2023-20198 Exploit PoC

PoC, Dockerfile playground and root cause from patch diff analysis.

g-FFL Cockpit <= 1.7.1 - Improper Authorization to Unauthenticated Product Deletion

CVE-2025-29927: Next.js Middleware Exploit

Proof-of-concept exploit for CVE-2023-20198 targeting Cisco IOS XE Web UI. Enables unauthenticated remote command execution, configuration retrieval,…

Exploit for Zabbix SAML SSO bypass (CVE-2022-23131) enabling unauthorized admin access by forging session cookies.

Non-destructive scanner for CVE-2026-35616, a pre-authentication API bypass in FortiClient EMS. Detects vulnerability by comparing HTTP responses…

JBoss Autopwn as featured at BlackHat Europe 2010 - this version incorporates CVE-2010-0738 the JBoss authentication bypass VERB manipulation…