There are no reviews yet. Be the first to send feedback to the community and the maintainers!
CVE-2023-29357
Microsoft SharePoint Server Elevation of Privilege VulnerabilityCVE-2024-25600
Unauthenticated Remote Code Execution – Bricks <= 1.9.6CVE-2023-22515
CVE-2023-22515: Confluence Broken Access Control ExploitCVE-2024-3273
D-Link NAS CVE-2024-3273 Exploit ToolCVE-2023-6553
Backup Migration <= 1.3.7 - Unauthenticated Remote Code ExecutionCVE-2024-36401
GeoServer Remote Code ExecutionCVE-2024-21887
A command injection vulnerability in web components of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) allows an authenticated administrator to send specially crafted requests and execute arbitrary commands on the appliance.CVE-2024-34102
CosmicSting (CVE-2024-34102)CVE-2024-8504
VICIdial Unauthenticated SQLi to RCE Exploit (CVE-2024-8503 and CVE-2024-8504)CVE-2024-27198
Proof of Concept for Authentication Bypass in JetBrains TeamCity Pre-2023.11.4LFIHunt
Advanced Tool To Scan And Exploit Local File Inclusion (LFI) VulnerabilitiesCVE-2024-4577
PHP CGI Argument Injection vulnerabilityCVE-2024-21893-to-CVE-2024-21887
CVE-2024-21893 to CVE-2024-21887 Exploit ToolkitCVE-2024-1212
Unauthenticated Command Injection In Progress Kemp LoadMasterCVE-2023-50917
MajorDoMo Unauthenticated RCE: Deep Dive & Exploitation TechniquesCVE-2024-29269
An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the Cmd parameter.CVE-2023-30943
A Python-based tool to detect the CVE-2023-30943 vulnerability in Moodle, which allows unauthorized folder creation via specially crafted requests in TinyMCE loaders.CVE-2024-3400
CVE-2023-46805
Ivanti Pulse Secure CVE-2023-46805 Scanner - Based on Assetnote's ResearchCVE-2023-51467
Apache OfBiz Auth Bypass Scanner for CVE-2023-51467CVE-2023-22527
Atlassian Confluence - Remote Code ExecutionCVE-2023-5360
Exploit for the unauthenticated file upload vulnerability in WordPress's Royal Elementor Addons and Templates plugin (< 1.3.79). CVE-ID: CVE-2023-5360.CVE-2024-7954
Unauthenticated Remote Code Execution in SPIP versions up to and including 4.2.12CVE-2024-20767
Exploit Toolkit for Adobe ColdFusion CVE-2024-20767 VulnerabilityCVE-2024-8517
SPIP BigUp Plugin Unauthenticated RCELeakPy
LeakIX API Client/libBalgo-Crypter
Balgo Crypter is a Xor encoded payload generation utility with hexadecimal.CVE-2024-5084
Hash Form – Drag & Drop Form Builder <= 1.1.0 - Unauthenticated Arbitrary File Upload to Remote Code ExecutionCVE-2023-27372
SPIP Vulnerability Scanner - CVE-2023-27372 DetectorGhost-Framework
Modified Version of Ghost FrameworkCVE-2024-45519
Zimbra - Remote Command Execution (CVE-2024-45519)CVE-2024-22899-to-22903-ExploitChain
Comprehensive Exploit Chain for Multiple Vulnerabilities in VinChin Backup & Recovery <= 7.2CVE-2017-9841
PHPUnit RCECVE-2022-27925-Revshell
Python Script to exploit Zimbra Auth Bypass + RCE (CVE-2022-27925)CVE-2022-40684
Fortinet Critical Authentication Bypass Vulnerability (CVE-2022-40684) [ Mass Exploit ]CVE-2022-1388
CVE-2022-1388 | F5 - Big IP Pre Auth RCE via '/mgmt/tm/util/bash' endpointCVE-2024-31819
Unauthenticated Remote Code Execution (RCE) Vulnerability in WWBNIndex Plugin of AVideo Platform from 12.4 to 14.2CVE-2023-35885
CloudPanel 2 Remote Code Execution ExploitCVE-2022-26134
CVE-2022-26134 - Pre-Auth Remote Code Execution via OGNL InjectionCVE-2022-31814
pfBlockerNG <= 2.1.4_26 Unauth RCE (CVE-2022-31814)dorkscanner
CVE-2023-3519
Citrix ADC RCE CVE-2023-3519CTF-Challenges
This repo contains challenges I made to train my friendsCVE-2022-29303
Python script to exploit CVE-2022-29303My-CVEs
List of my CVEsCVE-2023-1698
WAGO Remote Exploit Tool for CVE-2023-1698CVE-2023-28432
Automated vulnerability scanner for CVE-2023-28432 in Minio deployments, revealing sensitive environment variables.CyberPanel
CyberPanel v2.3.6 Pre-Auth RCE Exploit Toolmsf-exploit-collection
✪ Collection of Metasploit Modules ✪CVE-2022-29464
Python script to exploit CVE-2022-29464 (mass mode)NmapWeb-Choca
Use nmap from Flask App (testing purpose)CVE-2021-46422
Telesquare SDT-CW3B1 1.1.0 - OS Command InjectionPersonalRobloxScripts
Here is my personal exploitsCVE-2023-33617
Authenticated OS command injection vulnerability (CVE-2023-33617)CVE-2022-22954
Python script to exploit CVE-2022-22954 and then exploit CVE-2022-22960SQLI-DIOS
Created SQLI DIOSCVE-2022-30525-Reverse-Shell
Simple python script to exploit CVE-2022-30525 (FIXED): Zyxel Firewall Unauthenticated Remote Command InjectionBalgoFuckerrrr
SSH Botnet remastored by Balgo Security and mindfuckerrrrCVE-2021-41773
CVE-2021-35064
Python script to exploit CVE-2021-35064 and CVE-2021-36356CVE-2022-44877
Bash Script for Checking Command Injection Vulnerability on CentOS Web Panel [CWP] (CVE-2022-44877)VSCode-Config-File-Parser
This program is designed to parse Visual Studio Code configuration files (sftp.json) that may be exposed on the internetCVE-2022-39952
PoC for CVE-2022-39952 affecting Fortinet FortiNAC.CVE-2022-29455
DOM-based Reflected Cross-Site Scripting (XSS) vulnerability in Elementor's Elementor Website Builder plugin <= 3.5.5 versions.CVE-2022-36804-ReverseShell
PoC exploit for CVE-2022-36804 (BitBucket Critical Command Injection)CVE-2023-35082
Remote Unauthenticated API Access Vulnerability in MobileIron Core 11.2 and olderCVE-2023-38646
Remote Code Execution on Metabase CVE-2023-38646pentest-reseau
Projet de pentest réseau automatiséCVE-2023-36846
Remote Code Execution on Junos OS CVE-2023-36846CVE-2019-19492
FreeSWITCH Exploit (CVE-2019-19492)PythonRAT
botnetGithubBackup
GitHub Backup ScriptShells
onelinepy
MultiPwn
Piano-Tiles-Bot
My own Bot to cheat on Piano Tilesprojet_selinux
Projet SELinuxsinkhole
Sinkhole for my school projectssl_explorer
A CLI Tool for Extracting Server Ownership Clues from SSL/TLS Certificateslfi-training
LFI Challenge - Capture The Flag (CTF)Love Open Source and this site? Check out how you can help us