
CVE-2024-3400
Exploit for GlobalProtect CVE-2024-3400

Exploit for GlobalProtect CVE-2024-3400

Unauthenticated RCE in GLPI 10.0.2

RCE exploit for AVideo < 8.9 (CVE-2020-23489 & CVE-2020-23490)

Modified for GLPI Offsec Lab: call_user_func, array_map, passthru

CVE-2022-1388 F5 BIG-IP iControl REST Auth Bypass RCE written in Rust

Exploit de reverseshell para desserialização em NodeJs (CVE-2017-5941)

A critical RCE vulnerability has been identified in the Wazuh server due to unsafe deserialization in the wazuh-manager package. This bug affects…

本脚本是针对 GeoServer 的远程代码执行漏洞(CVE-2024-36401)开发的 PoC(Proof of Concept)探测工具。该漏洞允许攻击者通过构造特定请求,在目标服务器上执行任意命令。

Proof-of-Concept (PoC) for CVE-2025-34028, a Remote Code Execution vulnerability in Commvault Command Center. This Python script scans single or…

Go-based proof-of-concept exploit for CVE-2023-5044 in ingress-nginx, enabling authenticated remote command execution by creating crafted Kubernetes…

Python exploit for CVE-2024-53677 Apache Struts path traversal to remote code execution. Automates file upload parameter manipulation to achieve RCE…

Unauthenticated Remote Code Execution (RCE) vulnerability in the JCE (Joomla Content Editor) extension for Joomla

Proof-of-concept exploit for CVE-2026-23744, an unauthenticated command injection in MCP Connect leading to remote code execution and reverse shell.

FacturaScripts RCE Exploit - Proof of Concept

Proof-of-concept demonstrating command injection in Composer's Perforce driver (CVE-2026-40176), enabling remote code execution via crafted…

Authenticated RCE exploit for EspoCRM <= 9.3.3 (CVE-2026-33656) via Formula ACL bypass, path traversal, and .htaccess poisoning to achieve OS command…

CVE-2025-55182 — React2Shell

CVE-2025-58434 & CVE-2025-59528