
exch_CVE-2021-42321
Modified .NET deserialization payload for CVE-2021-42321, based on ysoserial.net, that writes files and bypasses Windows Defender to target Microsoft…

Modified .NET deserialization payload for CVE-2021-42321, based on ysoserial.net, that writes files and bypasses Windows Defender to target Microsoft…

Python exploit for CVE-2023-26360 targeting Adobe ColdFusion unauthenticated RCE via log poisoning and template execution, supporting Windows and…

Proof-of-concept exploit for CVE-2021-34427 targeting Birt Viewer 4.8.0 on Windows. Demonstrates exploitation of a remote code execution…

Proof-of-concept exploit for PreAuth RCE in ManageEngine ServiceDesk Plus (CVE-2021-44077). Uploads and executes arbitrary Windows executables on…

Generates malicious DOCX documents exploiting CVE-2021-40444 (Microsoft Office RCE) with a hosted server for DLL payload delivery, based on…

Python-based exploit checker for CVE-2021-36260 targeting Hikvision IP cameras via HTTP. Performs remote vulnerability verification with…

Proof-of-concept document generator for CVE-2022-30190 (Follina) that creates malicious docx files and hosts an HTTP server to trigger remote code…

This is a PoC for the CVE-2025-24813 and tested in different environments.

Malicious DOCX generator exploiting CVE-2021-40444 for remote code execution via crafted Office documents, with integrated hosting server for payload…

Generates malicious DOCX files exploiting CVE-2021-40444 to achieve remote code execution via crafted Office documents, with an integrated hosting…

Generates malicious DOCX files exploiting CVE-2021-40444 to achieve remote code execution via crafted CAB and HTML payloads, with a built-in hosting…

Generates malicious DOCX documents exploiting CVE-2021-40444 (Microsoft Office Word RCE) with a built-in HTTP server for payload delivery and…

HTTP request smuggling vulnerability scanner that detects CL.TE and TE.CL desync attacks using multiple payload types, with configurable verification…

Bypass 4xx HTTP response status codes and more. The tool is based on Python Requests, PycURL, and HTTP Client.

A python server tool based on flask , this tool can phish some Facebook credentials!