Skip to content
KitploitKITPLOIT
उपकरणएक्सप्लॉइटब्लॉग
Log in
जमा करें
उपकरणएक्सप्लॉइटब्लॉग
जमा करें

हैकिंग, पेनटेस्ट और साइबर सुरक्षा उपकरण आपके सुरक्षा शस्त्रागार के लिए!

Kitploit हैकिंग, साइबर सुरक्षा और पेंटेस्टिंग टूल्स की एक निर्देशिका है। कमजोरियों को खोजने, सिस्टम का विश्लेषण करने, परीक्षण को स्वचालित करने और अपनी सुरक्षा को मजबूत करने के लिए नवीनतम प्रोजेक्ट अपडेट खोजें।

··फ़ीड·संपर्क·गोपनीयता·© 2026 Kitploit

टूल निर्देशिका

श्रेणियाँ

सभी श्रेणियाँ देखें
Loading categories
CVEs — Proof-of-Concept exploits for CVEs found by the team at Rhino Security Labs | Kitploit
उपकरण/GitHubGitHub/rhinosecuritylabs/cves
Authentication & AuthorizationPrivilege EscalationVulnerability AnalysisExploitationWeb Application ExploitationPenetration Testing
GitHubrhinosecuritylabs/cves

CVEs

Proof-of-Concept exploits for CVEs found by the team at Rhino Security Labs

रिपॉजिटरी देखें
9052501315 दिन पहलेKitploit द्वारा समीक्षित

सबसे लोकप्रिय

सभी देखें →

हमारे समुदाय द्वारा सबसे अधिक उपयोग किए जाने वाले उपकरण खोजें।

सभी उपकरण खोजें

हमारे उपकरणों का संग्रह ब्राउज़ करें

सभी उपकरण देखें →
साझा करें
अनुरोधित भाषा में सामग्री उपलब्ध नहीं है। अंग्रेज़ी संस्करण दिखाया जा रहा है।

Rhino CVE Proof-of-Concept Exploits

A collection of proof-of-concept exploit scripts written by the team at Rhino Security Labs for various CVEs.

  • CVE-2026-46546: Frappe LMS Header Tag Injection Leading to Open Redirect
  • CVE-2026-39405: Frappe LMS Path Traversal in SCORM Package Upload Leading to Remote Code Execution
  • CVE-2026-34606: Frappe LMS Stored XSS in Profile Bio and Other Fields
  • CVE-2025-32815: Infoblox NetMRI Authentication Bypass via Hardcoded Credentials
  • CVE-2025-32814: Infoblox NetMRI Unauthenticated SQL Injection via skipjackUsername
  • CVE-2025-32813: Infoblox NetMRI Unauthenticated Command Injection in get_saml_request
  • CVE-2024-55965: Denial of Service via Broken Access Control allowing “App Viewer” access to ‘Restart’ API request
  • CVE-2024-55963: Unauthenticated Remote Code Execution as postgres user
  • CVE-2024-54188: Infoblox NetMRI Authenticated Arbitrary File Read as Root
  • CVE-2024-52874: Infoblox NetMRI Authenticated SQL Injection in Run.tdf
  • CVE-2024-46507: YETI platform SSTI
  • CVE-2024-2449: Cross-Site Requets Forgery in Progress Kemp LoadMaster
  • CVE-2024-2448: Authenticated Command Injection in Progress Kemp LoadMaster
  • CVE-2024-2389: Progress Software Flowmon Unauthenticated Command Injection
  • CVE-2024-23724: Ghost CMS Stored XSS Leading to Owner Takeover
  • CVE-2024-1212: Unauthenticated Command Injection in Progress Kemp LoadMaster
  • CVE-2023-47327: Silverpeas Core Space Create Function is vulnerable to Broken Access Control
  • CVE-2023-47326: Silverpeas Core Domain Creation is vulnerable to CSRF
  • CVE-2023-47325: Silverpeas Core Broken Access Control on the "Bin" Allows Modification of Deleted Spaces
  • CVE-2023-47324: Silverpeas Core Stored XSS in Messages
  • CVE-2023-47323: Silverpeas Core Broken Access Control Allows Reading All Messages
  • CVE-2023-47322: Silverpeas Core CSRF Leading to Privilege Escalation
  • CVE-2023-47321: Silverpeas Core Portlet Deployer Access via Broken Access Control
  • CVE-2023-47320: Silverpeas Core Denial of Service via Broken Access Control
  • CVE-2023-43121: Extreme Networks EXOS Unauthenticated File Read
  • CVE-2023-43120: Extreme Networks EXOS Privilege Escalation from read-only User to Admin
  • CVE-2023-43119: Extreme Networks EXOS Arbitrary File Write as Root
  • CVE-2023-43118: Extreme Networks EXOS CSRF to RCE
  • CVE-2022-25372: Local Privilege Escalation In Pritunl VPN Client
  • CVE-2022-25237: Authorization Bypass Leading to RCE in Bonitasoft Web
  • CVE-2022-25166: AWS VPN Client Arbitrary File Write as SYSTEM
  • CVE-2022-25165: AWS VPN Client Information Disclosure Via UNC Path
  • CVE-2021-38112: AWS WorkSpaces Remote Code Execution
  • CVE-2020-5377 and CVE-2021-21514: Dell OpenManage Server Administrator Arbitrary File Read
  • CVE-2020-13405: MicroWeber Unauthenticated User Database Disclosure
  • CVE-2019-9926: LabKey Server CSRF
  • CVE-2019-9758: LabKey Server Stored XSS
  • CVE-2019-9757: LabKey Server XXE
  • CVE‑2019‑5678: Command Injection in Nvidia GeForce Experience Web Helper
  • CVE‑2019‑5674: NVIDIA GeForce Experience Arbitrary File Overwrites
  • CVE-2019-3722: Dell EMC OpenManage Server Administrator (OMSA) XXE
  • CVE‑2019‑16864: CompleteFTP Server Authenticated Remote Command Execution
  • CVE‑2019‑16116: CompleteFTP Server Local Privilege Escalation
  • CVE-2019-0227: Apache Axis 1.4 Remote Code Execution
  • CVE-2018-8024: Apache Spark XSS vulnerability in UI
  • CVE-2018-5758: XXE in Jive-n
  • CVE-2018-5757: RCE In AudioCodes 450HD Phone
  • CVE-2018-20621: MEmu Android Emulator Local Privilege Escalation
  • CVE-2018-1335: Command Injection in Apache Tika-server
  • CVE-2018-1000110: User and Node Enumeration Through Jenkins Git Plugin <v3.7
  • CVE-2017-7284: Unitrends Force Password Change Without Current Password
  • CVE-2017-7283: Unitrends Enterprise Backup Solution RCE via Retore File
  • CVE-2017-7282: Unitrends Enterprise Backup Solution LFI
  • CVE-2017-7281: Unitrends Enterprise Backup Solution RCE Via File Upload
  • CVE-2017-7280: Unitrends Enterprise Backup Solution Command Execution
टूल डाउनलोड करें