
CVE-2024-4157-SSRF-RCE-Reverse-Shell
Chaining Havoc C2 SSRF with RCE to get reverse shell on Havoc C2 Server.

Chaining Havoc C2 SSRF with RCE to get reverse shell on Havoc C2 Server.

The graph functionality of DeimosC2 v1.1.0-Beta is vulnerable to Stored Cross-Site Scripting (XSS), allowing the theft of session cookie and…

command injection vulnerability in the web server of some Hikvision product. Due to the insufficient input validation, attacker can exploit the…

his repository contains an automated Proof of Concept (PoC) script for exploiting **CVE-2025-24813**, a Remote Code Execution (RCE) vulnerability in…

Time Based SQL Injection in Zabbix Server Audit Log --> RCE

Bash simulator to control a server using PHP system functions.

A non-intrusive surface scanner for CVE-2025-55182 (React Server Components RCE). Detects exposed RSC endpoints in React 19 and Next.js applications

Improper Authorization Vulnerability in Confluence Data Center and Server

Apache HugeGraph Server RCE Scanner ( CVE-2024-27348 )

Wing FTP Server Remote Code Execution (RCE) Exploit (CVE-2025-47812)

POC from TestANull for CVE-2021-28482 on Exchange Server

Advanced Exploitation Toolkit for Next.js Server Actions (CVE-2025-55182)

Pwndoc local file inclusion to remote code execution of Node.js code on the server

CVE-2021-34473 Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2018-16341 - Nuxeo Remote Code Execution without authentication using Server Side Template Injection

Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Security). Supported versions that are affected…

RCE exploit for Microsoft Exchange Server (CVE-2021-26855).

Apache HugeGraph Server Unauthenticated RCE - CVE-2024-27348 Proof of concept Exploit