
CVE-2024-21378
This repository contains an exploit for targeting Microsoft Outlook through Exchange Online, leveraging a vulnerability to execute arbitrary code via…

This repository contains an exploit for targeting Microsoft Outlook through Exchange Online, leveraging a vulnerability to execute arbitrary code via…

AtMail Email Server Appliance 6.4 - Exploit toolchain (XSS > CSRF > RCE)

This tools will extracts and dumps Email + SMTP from vBulletin database server

CVE-2017-14322 Interspire Email Marketer (emailmarketer) Exploit

An issue has been discovered in GitLab CE/EE affecting all versions from 16.1 prior to 16.1.6, 16.2 prior to 16.2.9, 16.3 prior to 16.3.7, 16.4 prior…

CVE-2022-40347: Intern Record System - 'phone', 'email', 'deptType' and 'name' SQL Injection (Unauthenticated)

CVE-2022-40348: Intern Record System - 'name' and 'email' Cross-site Scripting (Unauthenticated)

Updated POC for Unauth Post Author Email Disclosures WordPress CVE-2023-5561

Proofpoint Email Gateway: Low level authenticated user to admin RCE

Proofpoint Email Gateway: Unauthenticated RCE

Cisco Email Security Appliance: Remote Code Execution - RCE from config file

An automated attack chain based on CVE-2022-30190, 163 email backdoor, and image steganography.

CVE-2022-0439 - Email Subscribers & Newsletters < 5.3.2 - Subscriber+ Blind SQL injection

WP Email Users <= 1.7.6 - SQL Injection

CVE-2025-9728: Reflected XSS in Login Form (Email & Password Fields) Vvveb CMS v1.0.7.2

Local File Inclusion in Contact Plan, E-Mail, SMS and Fax components in Asseco SEE Live 2.0 allows remote authenticated users to access files on the…

CVE-2024-4295 Email Subscribers by Icegram Express <= 5.7.20 - Unauthenticated SQL Injection via hash

This exploit targets an unauthenticated SQL injection vulnerability in CMS Made Simple <= 2.2.9 (CVE-2019-9053). It uses a time-based blind SQL…