Exploitation Tools

997 tools
CVE_Prioritizer
CVE_Prioritizer
Open Source Exploitation

Streamline vulnerability patching with CVSS, EPSS, and CISA's Known Exploited Vulnerabilities. Prioritize actions based on real-time threat …

CVE-2021-3129
CVE-2021-3129
Open Source Exploitation

Laravel RCE Exploit PoC - CVE-2021-3129 (user-friendly with automatic log path detection)

CVE-2022-23808
CVE-2022-23808
Free Exploitation Web Application

A series of weaknesses has been discovered that could allow an attacker to inject malicious code in to aspects of the setup script, which ca…

CVE-2022-36446-Webmin-Software-Package-Updates-RCE
CVE-2022-36446-Webmin-Software-Package-Updates-RCE
Free Exploitation

A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.

CVE-2023-22515
CVE-2023-22515
Free Exploitation Post-Exploitation

CVE-2023-22515: Confluence Broken Access Control Exploit

CVE-2023-22960
CVE-2023-22960
Open Source Exploitation

This vulnerability allows an attacker to bypass the credentials brute-force prevention mechanism of the Embedded Web Server (interface) of m…

CVE-2023-25690-POC
CVE-2023-25690-POC
Free Exploitation

CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request Smu…

CVE-2023-27372
CVE-2023-27372
Free Exploitation Web Application

SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions ar…

CVE-2023-46747-RCE
CVE-2023-46747-RCE
Free Exploitation

exploit for f5-big-ip RCE cve-2023-46747

CVE-2024-21338
CVE-2024-21338
Free Exploitation

Windows AppLocker Driver (appid.sys) LPE

CVE-2024-21683-RCE
CVE-2024-21683-RCE
Free Exploitation

CVE-2024-21683 Confluence Post Auth RCE

CVE-2024-22120-RCE
CVE-2024-22120-RCE
Free Exploitation

Time Based SQL Injection in Zabbix Server Audit Log --> RCE

CVE-2024-27348
CVE-2024-27348
Free Exploitation

Apache HugeGraph Server RCE Scanner ( CVE-2024-27348 )

CVE-2024-32002
CVE-2024-32002
Free Exploitation

This repository contains a Proof of Concept (PoC) for CVE-2024-32002, a Remote Code Execution (RCE) vulnerability in Git submodules. The exp…

CVE-2024-32640-SQLI-MuraCMS
CVE-2024-32640-SQLI-MuraCMS
Free Exploitation

CVE-2024-32640 | Automated SQLi Exploitation PoC

CVE-2024-36401
CVE-2024-36401
Open Source Exploitation

Remote Code Execution (RCE) Vulnerability In Evaluating Property Name Expressions with multies ways to exploit

CVE-2024-38856_Scanner
CVE-2024-38856_Scanner
Free Exploitation

Apache OFBiz RCE Scanner & Exploit (CVE-2024-38856)

CVE-2024-4040-SSTI-LFI-PoC
CVE-2024-4040-SSTI-LFI-PoC
Free Exploitation Web Application

CVE-2024-4040 CrushFTP SSTI LFI & Auth Bypass | Full Server Takeover | Wordlist Support

CVE-2024-46538
CVE-2024-46538
Free Exploitation

PfSense Stored XSS lead to Arbitrary Code Execution exploit

CVE-2024-49138-POC
CVE-2024-49138-POC
Free Exploitation

POC exploit for CVE-2024-49138

CVE-2024-5932
CVE-2024-5932
Free Exploitation

GiveWP PHP Object Injection exploit

CVE-2024-6387
CVE-2024-6387
Free Exploitation

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)

CVE-2024-6387_Check
CVE-2024-6387_Check
Open Source Exploitation

CVE-2024-6387_Check is a lightweight, efficient tool designed to identify servers running vulnerable versions of OpenSSH

CVE-2024-9264
CVE-2024-9264
Free Exploitation

Exploit for Grafana arbitrary file-read and RCE (CVE-2024-9264)