
CVE-2023-46020-Code-Projects-Blood-Bank-1.0-Stored-Cross-Site-Scripting-Vulnerability
Proof-of-concept exploit for stored cross-site scripting (XSS) vulnerability in Code-Projects Blood Bank V1.0 via unsanitized profile parameters,…

Proof-of-concept exploit for stored cross-site scripting (XSS) vulnerability in Code-Projects Blood Bank V1.0 via unsanitized profile parameters,…

110 offensive-security one-liners for authorized testing and CTFs, grouped by category and kill-chain step.

Proof-of-concept exploit and vulnerability disclosure for HiSilicon hi3520d DVR/NVR devices. Demonstrates RCE via web interface, backdoor…

This tool is used to map out the network data flow to help penetration testers identify potentially valuable targets.

Proof-of-concept for CVE-2024-48427: SQL injection in Sourcecodester Packers and Movers Management System v1.0. Exploits the id parameter to execute…

Distributed Network Vulnerability Scanner

A tool to use novel locations to extract metadata from Office documents.

A New Approach to Directory Bruteforce with WaybackLister v1.0

Offline MGRS navigation + BLE proximity team sync for 2-8 people. No cell service needed. V1.0 through V4.0 roadmap in README.

CVE-2024-42657 An issue in wishnet Nepstech Wifi Router NTPL-XPON1GFEVN v1.0 allows a remote attacker to obtain sensitive information via the lack of…

CVE-2026-49049 Helix3 (JoomShaper) Joomla Unauthenticated AJAX RCE Scanner


CF Internal Link Shortcode <= 1.1.0 - Unauthenticated SQL Injection

Cross Site Scripting on sanitization-management-system

Best house rental management system Local file contains vulnerability

School Fees Management System v1.0 - Incorrect Access Control - Directory Listing

CVE-2024-42658 An issue in wishnet Nepstech Wifi Router NTPL-XPON1GFEVN v1.0 allows a remote attacker to obtain sensitive information via the cookies…

Unauthenticated remote code execution exploit for Vehicle Management System in PHP via unrestricted file upload in newdriver.php and newvehicle.php,…