
CVE-2015-8562
Joomla 1.5 - 3.4.5 Object Injection RCE X-Forwarded-For header

Joomla 1.5 - 3.4.5 Object Injection RCE X-Forwarded-For header

Python exploit for CVE-2015-1579 targeting WordPress Slider Revolution <= 4.1.4, allowing remote file disclosure. Usage: python3 xpl.py --url=target.

CVE-2026-23744 RCE + Privilege Escalation

CVE-2019-17621 DLink_RCE

Exploit POC for CVE-2022-0824

Exploit for CVE-2021-3036, HTTP Smuggling + buffer overflow in PanOS 8.x

EXPOSURE demo target: Tomcat (CVE-2016-0714) + Apache Rave (CVE-2013-1814) + Java filter-padding deps

PoC CVE-2025-55182

RCE Chamilo 1.11.24

TP-Link Tapo c200 ver <1.1.15 - Remote Code Execution (RCE)

Proof-of-concept exploit for CVE-2024-45590, demonstrating unauthenticated remote code execution in a WordPress plugin via arbitrary file upload.…

CVE-2023-3452 exploit for WordPress Canto plugin RCE, HTTPS support included

A repository used for Hackthebox ServMon Machine

NMAP script to detect and exploit CVE-2020-5902, a remote code execution vulnerability in F5 BIG-IP TMUI, for security assessment and penetration…

MLflow LFI/RFI Vulnerability -CVE-2023-1177 - Reproduced

Multi-threaded Python scanner for CVE-2025-30208 Vite path traversal vulnerability with custom payload support, batch scanning, and proxy debugging.

CVE-2021-40903

Proof of Concept: CVE-2026-21858 is vulnerability on n8n where unauthenticated remote attackers can access sensitive files.