
CVE-2025-55182_RCE_Exploit
Python-based RCE detection tool that sends crafted POST requests, analyzes responses for execution indicators, and supports batch scanning with…

Python-based RCE detection tool that sends crafted POST requests, analyzes responses for execution indicators, and supports batch scanning with…

Proof-of-concept demonstrating DLL execution via Qt platformpluginpath option in Kleopatra, exploiting CVE-2020-24972 through custom URI schemes.

CVE-2022-29464 exploit tool with detection and arbitrary file upload capabilities, supporting single URL and batch scanning with custom webshell…

Automated scanner for CVE-2025-55182 RCE in Next.js with 8 WAF bypass techniques, custom command execution, and test-only detection mode for…

Apache Tomcat AJP Ghostcat (CVE-2020-1938) exploit tool for file disclosure with multi-target scanning, custom wordlists, and upload point detection…

Proof-of-concept exploit for CVE-2025-26153: stored XSS in Chamilo LMS forum threads enabling privilege escalation from regular user to admin via…

Proof-of-concept exploit for CVE-2025-67303 targeting remote code execution in ComfyUI Manager via malicious custom node installation. Includes…

Python-based exploit generator for CVE-2017-11882 (Microsoft Office Equation Editor vulnerability) with support for custom shellcode, mshta payloads,…

Dockerized lab environment for safely practicing CVE-2021-44228 (Log4Shell) exploitation. Includes attacker LDAP server and vulnerable Java…

Python exploit script for CVE-2024-28397 targeting js2py <= v0.74. Supports reverse shell and custom command execution via HTTP endpoint.

Python-based proof-of-concept exploit for CVE-2018-7600 (Drupalgeddon2) enabling remote code execution on vulnerable Drupal sites, with multi-target…

Python exploit for CVE-2025-47812 targeting WingFTP Server, enabling unauthenticated remote code execution via NULL byte injection in username field,…

A custom Python-based proof-of-concept (PoC) exploit targeting Text4Shell (CVE-2022-42889), a critical remote code execution vulnerability in Apache…

Proof-of-concept exploit and custom payload generator for CVE-2018-5146, including crafted OGG POC file and HTML-based exploit with CRC32 calculation…

Subrion File Upload Bypass to RCE and Custom File Upload (Authenticated) POC

Proof-of-concept exploit for CVE-2021-44228 (Log4Shell) demonstrating remote code execution via JNDI injection with LDAP server and custom payload…

ALL In One Custom Login Page <= 7.1.1 - Missing Authorization to Authenticated (Subscriber+)Privilege Escalation

Python3 exploit for CVE-2017-12617 (Apache Tomcat JSP upload RCE) with single URL and batch scanning modes, supporting custom payload deployment.