Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11114CVEs tracked
26004PoC repositories
17New in 24h
359PoC updated in 7 days
filters
Reset
All New Fresh PoC Hot Multi PoC Critical High

504 results

CVE-2023-32233
HOTMULTI PoC
PoCs 8 ★ 380 Last push 2026-08-09 (2 months ago)

Fetching description from NVD…

Show 8 repositories
Liuk3r/CVE-2023-32233

CVE-2023-32233: Linux内核中的安全漏洞

★ 380 · 2023-05-16
oferchen/POC-CVE-2023-32233

Use-After-Free in Netfilter nf_tables when processing batch requests CVE-2023-32233

★ 53 · 2023-06-20
PIDAN-HEIDASHUAI/CVE-2023-32233

自用,poc作者为Piotr Krysiuk,在使用前请先阅读README.md

★ 3 · 2023-05-16
void0red/CVE-2023-32233
★ 1 · 2024-04-01
Destawell/gemini-2.5-pro-nf-tables-red-teaming

Gemini 2.5 Pro nf_tables Red Teaming Case Study (CVE-2023-32233) — LLM Safety Alignment & Responsible Disclosure

★ 1 · 2026-07-15
RogelioPumajulca/TEST-CVE-2023-32233

CVE-2023-32233

★ 0 · 2024-02-04
Destawell/gemini-2.5-pro-nf-tables-red-teamin

A technical case study and timeline dataset documenting Google Gemini 2.5 Pro's safety alignment policies, guardrails, and refusal behavior evolution regarding…

★ 0 · 2026-05-31
adeadukagi/CVE-2023-32233-reproduction

A Linux-related vulnerability

★ 0 · 2026-08-09
CVE-2024-6387
HOTMULTI PoC
PoCs 96 ★ 526 Last push 2026-08-06 (2 months ago)

Fetching description from NVD…

Show 8 of 96 repositories
xaitax/CVE-2024-6387_Check

CVE-2024-6387_Check is a lightweight, efficient tool designed to identify servers running vulnerable versions of OpenSSH

★ 526 · 2026-05-29
zgzhang/cve-2024-6387-poc

a signal handler race condition in OpenSSH's server (sshd)

★ 497 · 2024-07-01
acrono/cve-2024-6387-poc

32-bit PoC for CVE-2024-6387 — mirror of the original 7etsuo/cve-2024-6387-poc

★ 376 · 2024-07-01
Karmakstylez/CVE-2024-6387

Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (CVE-2024-6387)

★ 196 · 2024-08-22
lflare/cve-2024-6387-poc

MIRROR of the original 32-bit PoC for CVE-2024-6387 "regreSSHion" by 7etsuo/cve-2024-6387-poc

★ 128 · 2024-07-25
l0n3m4n/CVE-2024-6387

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)

★ 114 · 2024-07-05
filipi86/CVE-2024-6387-Vulnerability-Checker

This Python script checks for the CVE-2024-6387 vulnerability in OpenSSH servers. It supports multiple IP addresses, URLs, CIDR ranges, and ports. The script c…

★ 102 · 2024-07-10
xonoxitron/regreSSHion

CVE-2024-6387 (regreSSHion) Exploit (PoC), a vulnerability in OpenSSH's server (sshd) on glibc-based Linux systems.

★ 71 · 2024-07-02
PoCs 2 ★ 221 Last push 2026-08-04 (2 months ago)

Fetching description from NVD…

Show 2 repositories
c0r0n3r/dheater

D(HE)ater is a proof of concept implementation of the D(HE)at attack (CVE-2002-20001) through which denial-of-service can be performed by enforcing the Diffie…

★ 221 · 2026-08-04
itmaniac/dheat_dos_attack_poc

POC for Testing the Existence of D(HE)at DOS Attack for (CVE-2002-20001)

★ 0 · 2025-07-29
CVE-2025-53770
HOTMULTI PoC
PoCs 44 ★ 314 Last push 2026-08-04 (2 months ago)

Fetching description from NVD…

Show 8 of 44 repositories
soltanali0/CVE-2025-53770-Exploit

SharePoint WebPart Injection Exploit Tool

★ 314 · 2025-11-28
MuhammadWaseem29/CVE-2025-53770

Unauthenticated Remote Code Execution via unsafe deserialization in Microsoft SharePoint Server (CVE-2025-53770)

★ 57 · 2025-08-04
hazcod/CVE-2025-53770

Scanner for the SharePoint CVE-2025-53770 RCE zero day vulnerability.

★ 45 · 2026-02-10
kaizensecurity/CVE-2025-53770

POC

★ 43 · 2025-07-21
ZephrFish/CVE-2025-53770-Scanner

ToolShell scanner - CVE-2025-53770 and detection information

★ 18 · 2026-07-30
3a7/CVE-2025-53770

CVE-2025-53770 Mass Scanner

★ 14 · 2025-07-29
AdityaBhatt3010/CVE-2025-53770-SharePoint-Zero-Day-Variant-Exploited-for-Full-RCE

A critical zero-auth RCE vulnerability in SharePoint (CVE-2025-53770), now exploited in the wild, building directly on the spoofing flaw CVE-2025-49706.

★ 11 · 2025-07-22
exfil0/CVE-2025-53770

A sophisticated, wizard-driven Python exploit tool targeting CVE-2025-53770, a critical (CVSS 9.8) unauthenticated remote code execution (RCE) vulnerability in…

★ 5 · 2025-07-23
CVE-2023-36874
HOTMULTI PoC
PoCs 5 ★ 243 Last push 2026-08-03 (2 months ago)

Fetching description from NVD…

Show 5 repositories
Wh04m1001/CVE-2023-36874
★ 243 · 2023-08-23
Octoberfest7/CVE-2023-36874_BOF

Weaponized CobaltStrike BOF for CVE-2023-36874 Windows Error Reporting LPE

★ 204 · 2023-08-25
d0rb/CVE-2023-36874

This repository contains a proof-of-concept exploit written in C++ that demonstrates the exploitation of a vulnerability affecting the Windows Error Reporting …

★ 79 · 2024-03-13
crisprss/CVE-2023-36874

CVE-2023-36874 Proof of Concept

★ 1 · 2023-08-22
johnnygreeme/CVE-2023-36874

Educational Proof of Concept (PoC) for CVE-2023-36874 — Windows Error Reporting (WER) Local Privilege Escalation vulnerability.

★ 0 · 2026-08-03
CVE-2022-21907
HOTMULTI PoC
PoCs 16 ★ 360 Last push 2026-08-03 (2 months ago)

Fetching description from NVD…

Show 8 of 16 repositories
ZZ-SOCMAP/CVE-2022-21907

HTTP Protocol Stack Remote Code Execution Vulnerability CVE-2022-21907

★ 360 · 2022-01-20
polakow/CVE-2022-21907

A REAL DoS exploit for CVE-2022-21907

★ 128 · 2022-04-13
p0dalirius/CVE-2022-21907-http.sys

Proof of concept of CVE-2022-21907 Double Free in http.sys driver, triggering a kernel crash on IIS servers

★ 82 · 2024-03-16
michelep/CVE-2022-21907-Vulnerability-PoC

CVE-2022-21907 Vulnerability PoC

★ 28 · 2022-01-23
mauricelambert/CVE-2022-21907

CVE-2022-21907: detection, protection, exploitation and demonstration. Exploitation: Powershell, Python, Ruby, NMAP and Metasploit. Detection and protection: P…

★ 26 · 2022-03-07
Malwareman007/CVE-2022-21907

POC for CVE-2022-21907: HTTP Protocol Stack Remote Code Execution Vulnerability.

★ 17 · 2025-06-18
0xmaximus/Home-Demolisher

PoC for CVE-2021-31166 and CVE-2022-21907

★ 8 · 2022-12-08
corelight/cve-2022-21907

cve-2022-21907

★ 5 · 2024-10-14
CVE-2021-21972
HOTMULTI PoC
PoCs 27 ★ 1484 Last push 2026-08-02 (2 months, 1 week ago)

Fetching description from NVD…

Show 8 of 27 repositories
Schira4396/VcenterKiller

一款针对Vcenter的综合利用工具,包含目前最主流的CVE-2021-21972、CVE-2021-21985以及CVE-2021-22005、One Access的CVE-2022-22954、CVE-2022-22972/31656以及log4j,提供一键上传webshell,命令执行或者上传公钥使用SSH免密…

★ 1484 · 2024-04-25
NS-Sp4ce/CVE-2021-21972

CVE-2021-21972 Exploit

★ 497 · 2023-06-08
horizon3ai/CVE-2021-21972

Proof of Concept Exploit for vCenter CVE-2021-21972

★ 269 · 2021-02-25
psc4re/NSE-scripts

NSE scripts to detect CVE-2020-1350 SIGRED and CVE-2020-0796 SMBGHOST, CVE-2021-21972, proxyshell, CVE-2021-34473

★ 162 · 2021-08-16
alt3kx/CVE-2021-21972
★ 54 · 2021-02-25
milo2012/CVE-2021-21972

CVE-2021-21972

★ 33 · 2021-03-01
GuayoyoCyber/CVE-2021-21972

Nmap script to check vulnerability CVE-2021-21972

★ 29 · 2021-03-03
CVE-2018-9995
HOTMULTI PoC
PoCs 26 ★ 559 Last push 2026-08-01 (2 months, 1 week ago)

Fetching description from NVD…

Show 8 of 26 repositories
ezelf/CVE-2018-9995_dvr_credentials

(CVE-2018-9995) Get DVR Credentials

★ 559 · 2019-01-23
Cyb0r9/DVR-Exploiter

DVR-Exploiter a Bash Script Program Exploit The DVR's Based on CVE-2018-9995

★ 112 · 2018-10-11
0xDamian/CVE-2018-9995-rs

POC of CVE-2018-9995 written in Rust.

★ 96 · 2025-11-01
X3RX3SSec/DVR_Sploit

Simple python3 script to automate CVE-2018-9995

★ 11 · 2024-02-20
zzh217/CVE-2018-9995_Batch_scanning_exp

CVE-2018-9995_Batch_scanning_exp

★ 4 · 2018-08-09
kienquoc102/CVE-2018-9995-2
★ 4 · 2021-11-15
wmasday/HTC

Hack The CCTV | DVRs; Credentials Exposed | CVE-2018-9995

★ 3 · 2023-07-27
Huangkey/CVE-2018-9995_check

DVR系列摄像头批量检测

★ 2 · 2018-05-09
CVE-2021-26855
HOTMULTI PoC
PoCs 51 ★ 247 Last push 2026-07-31 (2 months, 1 week ago)

Fetching description from NVD…

Show 8 of 51 repositories
Flangvik/SharpProxyLogon

C# POC for CVE-2021-26855 aka ProxyLogon, supports the classically semi-interactive web shell as well as shellcode injection

★ 247 · 2021-03-31
hosch3n/ProxyVulns

[ProxyLogon] CVE-2021-26855 & CVE-2021-27065 Fixed RawIdentity Bug Exploit. [ProxyOracle] CVE-2021-31195 & CVE-2021-31196 Exploit Chains. [ProxyShell] CVE-2021…

★ 175 · 2022-10-21
dwisiswant0/proxylogscan

A fast tool to mass scan for a vulnerability on Microsoft Exchange Server that allows an attacker bypassing the authentication and impersonating as the admin (…

★ 166 · 2022-03-02
p0wershe11/ProxyLogon

ProxyLogon(CVE-2021-26855+CVE-2021-27065) Exchange Server RCE(SSRF->GetWebShell)

★ 123 · 2021-03-17
cert-lv/exchange_webshell_detection

Detect webshells dropped on Microsoft Exchange servers exploited through "proxylogon" group of vulnerabilites (CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, …

★ 98 · 2021-03-16
h4x0r-dz/CVE-2021-26855
★ 98 · 2021-03-09
hackerschoice/CVE-2021-26855

PoC of proxylogon chain SSRF(CVE-2021-26855) to write file by testanull, censored by github

★ 59 · 2021-03-11
alt3kx/CVE-2021-26855_PoC
★ 53 · 2021-03-12
CVE-2020-16898
HOTMULTI PoC
PoCs 15 ★ 209 Last push 2026-07-31 (2 months, 1 week ago)

Fetching description from NVD…

Show 8 of 15 repositories
advanced-threat-research/CVE-2020-16898

CVE-2020-16898 (Bad Neighbor) Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule

★ 209 · 2020-10-26
ZephrFish/CVE-2020-16898

HoneyPoC 2.0: Proof-of-Concept (PoC) script to exploit IPv6 (CVE-2020-16898).

★ 22 · 2026-07-31
0xeb-bp/cve-2020-16898

PoC BSOD for CVE-2020-16898 (badneighbor)

★ 22 · 2020-10-16
momika233/CVE-2020-16898-exp
★ 17 · 2020-10-17
komomon/CVE-2020-16898--EXP-POC

CVE-2020-16898 Windows TCP/IP远程代码执行漏洞 EXP&POC

★ 12 · 2020-10-28
corelight/CVE-2020-16898

A network detection package for CVE-2020-16898 (Windows TCP/IP Remote Code Execution Vulnerability)

★ 9 · 2024-09-03
jiansiting/cve-2020-16898

PoC BSOD for CVE-2020-16898

★ 9 · 2020-10-17
komomon/CVE-2020-16898-EXP-POC

CVE-2020-16898 Windows TCP/IP远程代码执行漏洞 EXP&POC

★ 5 · 2020-10-28
CVE-2020-1350
HOTMULTI PoC
PoCs 15 ★ 280 Last push 2026-07-31 (2 months, 1 week ago)

Fetching description from NVD…

Show 8 of 15 repositories
ZephrFish/CVE-2020-1350_HoneyPoC

HoneyPoC: Proof-of-Concept (PoC) script to exploit SIGRed (CVE-2020-1350). Achieves Domain Admin on Domain Controllers running Windows Server 2000 up to Window…

★ 280 · 2026-07-31
maxpl0it/CVE-2020-1350-DoS

A denial-of-service proof-of-concept for CVE-2020-1350

★ 238 · 2020-07-17
psc4re/NSE-scripts

NSE scripts to detect CVE-2020-1350 SIGRED and CVE-2020-0796 SMBGHOST, CVE-2021-21972, proxyshell, CVE-2021-34473

★ 162 · 2021-08-16
captainGeech42/CVE-2020-1350

Denial of Service PoC for CVE-2020-1350 (SIGRed)

★ 18 · 2020-07-16
T13nn3s/CVE-2020-1350

This Powershell Script is checking if your server is vulnerable for the CVE-2020-1350 Remote Code Execution flaw in the Windows DNS Service

★ 15 · 2023-04-01
connormcgarr/CVE-2020-1350

CVE-2020-1350 Proof-of-Concept

★ 11 · 2020-07-27
corelight/SIGRed

Detection of attempts to exploit Microsoft Windows DNS server via CVE-2020-1350 (AKA SIGRed)

★ 9 · 2020-07-20
zoomerxsec/Fake_CVE-2020-1350

Fake exploit tool, designed to rickroll users attempting to actually exploit.

★ 7 · 2020-07-19
CVE-2022-1388
HOTMULTI PoC
PoCs 64 ★ 229 Last push 2026-07-30 (2 months, 1 week ago)

Fetching description from NVD…

Show 8 of 64 repositories
horizon3ai/CVE-2022-1388

POC for CVE-2022-1388

★ 229 · 2022-05-09
doocop/CVE-2022-1388-EXP

CVE-2022-1388 F5 BIG-IP RCE 批量检测

★ 92 · 2022-05-09
alt3kx/CVE-2022-1388_PoC

F5 BIG-IP RCE exploitation (CVE-2022-1388)

★ 87 · 2022-05-16
0xf4n9x/CVE-2022-1388

CVE-2022-1388 F5 BIG-IP iControl REST Auth Bypass RCE

★ 84 · 2022-06-28
ZephrFish/F5-CVE-2022-1388-Exploit

Exploit and Check Script for CVE 2022-1388

★ 59 · 2026-07-30
sherlocksecurity/CVE-2022-1388-Exploit-POC

PoC for CVE-2022-1388_F5_BIG-IP

★ 56 · 2022-05-15
numanturle/CVE-2022-1388

K23605346: BIG-IP iControl REST vulnerability CVE-2022-1388

★ 53 · 2022-05-09
Al1ex/CVE-2022-1388

CVE-2022-1388 F5 BIG-IP iControl REST RCE

★ 37 · 2022-05-09
CVE-2024-3400
HOTMULTI PoC
PoCs 44 ★ 162 Last push 2026-07-30 (2 months, 1 week ago)

Fetching description from NVD…

Show 8 of 44 repositories
h4x0r-dz/CVE-2024-3400

CVE-2024-3400 Palo Alto OS Command Injection

★ 162 · 2024-04-16
W01fh4cker/CVE-2024-3400-RCE-Scan

CVE-2024-3400-RCE

★ 90 · 2024-04-22
0x0d3ad/CVE-2024-3400

CVE-2024-3400

★ 71 · 2024-04-18
ihebski/CVE-2024-3400

CVE-2024-3400 PAN-OS: OS Command Injection Vulnerability in GlobalProtect

★ 34 · 2024-04-17
Chocapikk/CVE-2024-3400
★ 15 · 2025-04-06
momika233/CVE-2024-3400
★ 13 · 2024-04-14
Yuvvi01/CVE-2024-3400
★ 11 · 2024-04-13
ak1t4/CVE-2024-3400

Global Protec Palo Alto File Write Exploit

★ 9 · 2024-04-17
CVE-2023-22515
HOTMULTI PoC
PoCs 31 ★ 151 Last push 2026-07-29 (2 months, 1 week ago)

Fetching description from NVD…

Show 8 of 31 repositories
Chocapikk/CVE-2023-22515

CVE-2023-22515: Confluence Broken Access Control Exploit

★ 151 · 2025-11-12
ad-calcium/CVE-2023-22515

Confluence未授权添加管理员用户(CVE-2023-22515)漏洞利用工具

★ 110 · 2023-10-16
ErikWynter/CVE-2023-22515-Scan

Scanner for CVE-2023-22515 - Broken Access Control Vulnerability in Atlassian Confluence

★ 79 · 2023-10-06
AIex-3/confluence-hack

CVE-2023-22515

★ 50 · 2023-11-10
s1incere/CVE-2023-22515

Confluence Unauthorized Administrator User Addition Exploitation Script

★ 25 · 2026-03-26
aaaademo/Confluence-EvilJar

配合 CVE-2023-22515 后台上传jar包实现RCE

★ 22 · 2023-11-09
youcannotseemeagain/CVE-2023-22515_RCE

Confluence后台rce

★ 19 · 2023-10-20
j3seer/CVE-2023-22515-POC

Poc for CVE-2023-22515

★ 8 · 2023-10-10
CVE-2020-7961
HOTMULTI PoC
PoCs 10 ★ 117 Last push 2026-07-28 (2 months, 1 week ago)

Fetching description from NVD…

Show 8 of 10 repositories
mzer0one/CVE-2020-7961-POC
★ 117 · 2020-04-14
ShutdownRepo/CVE-2020-7961

Exploit script for CVE-2020-7961

★ 18 · 2021-01-15
dinosn/liferay-ga4-rce-research

Security research on Liferay CE 7.0.3 GA4: pre-auth RCE as root (CVE-2020-7961 class) reproduced end-to-end, plus 16 more findings — 8+ with no known CVE. Agen…

★ 7 · 2026-07-28
thelostworldFree/CVE-2020-7961-payloads

Deserialization of Untrusted Data in Liferay Portal prior to 7.2.1 CE GA2 allows remote attackers to execute arbitrary code via JSON web services (JSONWS)

★ 5 · 2020-04-03
CrackerCat/CVE-2020-7961-Mass

CVE-2020–7961 Mass exploit for Script Kiddies

★ 2 · 2021-01-03
pashayogi/CVE-2020-7961-Mass
★ 0 · 2022-05-22
manrop2702/CVE-2020-7961
★ 0 · 2024-03-14
neverhavenamee/CVE-2020-7961
★ 0 · 2025-09-13
CVE-2024-0582
HOTMULTI PoC
PoCs 8 ★ 101 Last push 2026-07-27 (2 months, 1 week ago)

Fetching description from NVD…

Show 8 repositories
ysanatomic/io_uring_LPE-CVE-2024-0582

LPE exploit for CVE-2024-0582 (io_uring)

★ 101 · 2024-03-29
geniuszly/CVE-2024-0582

is a PoC exploit targeting a specific vulnerability in the Linux kernel (CVE-2024-0582)

★ 13 · 2024-10-03
kuzeyardabulut/CVE-2024-0582

Data-only exploit for CVE-2024-0582

★ 13 · 2025-04-16
101010zyl/CVE-2024-0582-dataonly

A data-only attack based on CVE-2024-0582

★ 5 · 2024-12-15
Forsaken0129/CVE-2024-0582
★ 0 · 2024-04-05
0ptyx/cve-2024-0582
★ 0 · 2024-05-28
pwnmonk/io_uring-n-day

CVE-2024-0582 exploit

★ 0 · 2025-09-26
nanabingies/CVE-2024-0582

An exploit for a Use-After-Free vulnerability in the io_uring subsystem in the linux kernel

★ 0 · 2026-07-27
CVE-2016-10033
HOTMULTI PoC
PoCs 17 ★ 407 Last push 2026-07-24 (2 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 17 repositories
opsxcq/exploit-CVE-2016-10033

PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container

★ 407 · 2023-02-27
GeneralTesler/CVE-2016-10033

RCE against WordPress 4.6; Python port of https://exploitbox.io/vuln/WordPress-Exploit-4-6-RCE-CODE-EXEC-CVE-2016-10033.html

★ 9 · 2017-05-10
Zenexer/safeshell

Prevent PHP vulnerabilities similar to CVE-2016-10033 and CVE-2016-10045.

★ 8 · 2016-12-29
0x00-0x00/CVE-2016-10033

PHPMailer < 5.2.18 Remote Code Execution Exploit

★ 6 · 2018-02-09
pedro823/cve-2016-10033-45

Exploits CVE-2016-10033 and CVE-2016-10045

★ 2 · 2017-11-19
chipironcin/CVE-2016-10033

Code and vulnerable WordPress container for exploiting CVE-2016-10033

★ 1 · 2017-06-12
liusec/WP-CVE-2016-10033
★ 1 · 2017-07-22
awidardi/opsxcq-cve-2016-10033

To solve CTFS.me problem

★ 1 · 2018-02-06
CVE-2024-49113
HOTMULTI PoC
PoCs 6 ★ 518 Last push 2026-07-24 (2 months, 2 weeks ago)

Fetching description from NVD…

Show 6 repositories
SafeBreach-Labs/CVE-2024-49113

LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113

★ 518 · 2025-01-02
barcrange/CVE-2024-49113-Checker
★ 10 · 2025-01-03
Sachinart/CVE-2024-49113-Checker

Hi, This is to check targets vulnerable for CVE-2024-49113 in bulk, faster.

★ 3 · 2025-01-06
alphatin123/CVE-2024-49113

FYP: Reproduced CVE-2024-49113 PoC on Windows Server 2019 (ref. SafeBreach); assessed Windows EDR detection gaps and produced ISO 27001-aligned remediation rep…

★ 1 · 2026-07-18
0xMetr0/metasploit-ldapnightmare

SafeBreaches CVE-2024-49113 POC(LdapNightmare) Integrated into Metasploit

★ 0 · 2025-02-15
razureink/cve-2024-49113-ldap_nightmare_reproduction

Reproduction of cve-2024-49113-ldap_nightmare_reproduction

★ 0 · 2026-07-24
CVE-2025-59287
HOTMULTI PoC
PoCs 23 ★ 174 Last push 2026-07-23 (2 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 23 repositories
jiansiting/CVE-2025-59287

WSUS Unauthenticated RCE

★ 174 · 2025-10-28
mubix/Find-WSUS

Helps defenders find their WSUS configurations in the wake of CVE-2025-59287

★ 46 · 2025-10-28
Lupovis/Honeypot-for-CVE-2025-59287-WSUS

Defensive PoC decoy for CVE-2025-59287 (WSUS) - emulates WSUS endpoints, captures request bodies and metadata, saves evidence for forensic analysis, and provid…

★ 26 · 2025-10-27
tecxx/CVE-2025-59287-WSUS

powershell version of hawktrace POC exploit

★ 18 · 2025-10-27
garvitv14/CVE-2025-59287

Working exploit (PoC) for CVE-2025-59287 — WSUS vulnerability. Featured on Vulners and DeepWiki.

★ 16 · 2025-10-25
M507/CVE-2025-59287-PoC

Unauthenticated RCE PoC in Microsoft Windows Server Update Service (WSUS) - CVE-2025-59287 & CVE-2023-35317

★ 15 · 2025-12-10
QurtiDev/WSUS-CVE-2025-59287-RCE

Exploit script written in C# to aid gaining a reverse shell on targets with Windows Server Update Service(WSUS) CVE-2025-59287.

★ 11 · 2025-11-03
AdityaBhatt3010/CVE-2025-59287-When-your-patch-server-becomes-the-attack-vector

CVE-2025-59287 — Critical unauthenticated RCE in Windows Server Update Services (WSUS) via unsafe deserialization of an AuthorizationCookie, enabling SYSTEM-le…

★ 10 · 2025-10-28
PoCs 2 ★ 148 Last push 2026-07-23 (2 months, 2 weeks ago)

Fetching description from NVD…

Show 2 repositories
je5442804/WPTaskScheduler_CVE-2024-49039

WPTaskScheduler RPC Persistence & CVE-2024-49039 via Task Scheduler

★ 148 · 2025-07-21
razureink/cve-2024-49039-task_scheduler_eop_reproduction

CVE Reproduction: cve-2024-49039-task_scheduler_eop_reproduction

★ 0 · 2026-07-23
CVE-2024-38077
HOTMULTI PoC
PoCs 16 ★ 223 Last push 2026-07-23 (2 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 16 repositories
qi4L/CVE-2024-38077

RDL的堆溢出导致的RCE

★ 223 · 2024-08-14
mrmtwoj/CVE-2024-38077

CVE-2024-38077: Remote Code Execution Vulnerability in Windows Remote Desktop Licensing Service

★ 18 · 2024-10-09
murphysecurity/RDL-detect

远程探测 remote desktop licensing 服务开放情况,用于 CVE-2024-38077 漏洞快速排查

★ 13 · 2024-08-09
SecStarBot/CVE-2024-38077-POC
★ 9 · 2024-08-09
zhuxi1965/CVE-2024-38077-RDLCheck

检测RDL服务是否运行,快速排查受影响资产

★ 7 · 2024-08-10
BBD-YZZ/fyne-gui

CVE-2024-38077,仅支持扫描测试~

★ 7 · 2024-08-15
Wlibang/CVE-2024-38077

CVE-2024-38077,本仓库仅用作备份,

★ 3 · 2024-08-09
atlassion/CVE-2024-38077-check

基于135端口检测目标是否存在CVE-2024-38077漏洞

★ 2 · 2024-08-10
CVE-2023-2640
HOTMULTI PoC
PoCs 10 ★ 136 Last push 2026-07-22 (2 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 10 repositories
g1vi/CVE-2023-2640-CVE-2023-32629

GameOver(lay) Ubuntu Privilege Escalation

★ 136 · 2023-10-09
luanoliveira350/GameOverlayFS

GameoverlayFS (CVE-2023-2640 and CVE-2023-32629) exploit in Shell Script tested on Ubuntu 20.04 Kernel 5.4.0

★ 17 · 2023-09-17
OllaPapito/gameoverlay

CVE-2023-2640 CVE-2023-32629

★ 13 · 2023-08-15
SanjayRagavendar/Ubuntu-GameOver-Lay

Escalating Privilege using CVE-2023-2640 CVE-2023-3262

★ 1 · 2024-03-02
K5LK/CVE-2023-2640-32629
★ 1 · 2024-05-22
z3usx01/CVE-2023-2640-3262-PoC

POC exploits demonstrating OverlayFS-based local privilege escalation vulnerabilities in Ubuntu (CVE-2023-2640 & CVE-2023-3262)

★ 0 · 2026-04-04
PoCs 2 ★ 101 Last push 2026-07-21 (2 months, 2 weeks ago)

Fetching description from NVD…

Show 2 repositories
WhatsWrongAndWhy/CVE-2021-41073
★ 0 · 2026-07-21
CVE-2021-3490
HOTMULTI PoC
PoCs 5 ★ 317 Last push 2026-07-21 (2 months, 2 weeks ago)

Fetching description from NVD…

Show 5 repositories
pivik271/CVE-2021-3490
★ 2 · 2023-04-06
sandesh9978/cve-2021-3490-ebpf-analysis

Research implementation demonstrating interaction with Linux eBPF subsystem related to CVE-2021-3490. Includes BPF map creation, syscall wrappers, namespace se…

★ 0 · 2026-03-03
prabeershakya/CVE-2021-3490-POC
★ 0 · 2026-03-04
WhatsWrongAndWhy/CVE-2021-3490
★ 0 · 2026-07-21
CVE-2022-30190
HOTMULTI PoC
PoCs 93 ★ 390 Last push 2026-07-21 (2 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 93 repositories
komomon/CVE-2022-30190-follina-Office-MSDT-Fixed

CVE-2022-30190-follina.py-修改版,可以自定义word模板,方便实战中钓鱼使用。

★ 390 · 2023-04-13
JMousqueton/PoC-CVE-2022-30190

POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina

★ 158 · 2022-06-05
onecloudemoji/CVE-2022-30190

CVE-2022-30190 Follina POC

★ 104 · 2022-05-31
doocop/CVE-2022-30190

Microsoft Office Word Rce 复现(CVE-2022-30190)

★ 60 · 2022-05-31
Malwareman007/Deathnote

Proof of Concept of CVE-2022-30190

★ 38 · 2022-10-06
archanchoudhury/MSDT_CVE-2022-30190

This Repository Talks about the Follina MSDT from Defender Perspective

★ 37 · 2022-06-02
Hrishikesh7665/Follina_Exploiter_CLI

Exploit Microsoft Zero-Day Vulnerability Follina (CVE-2022-30190)

★ 34 · 2022-06-16
MalwareTech/FollinaExtractor

Extract payload URLs from Follina (CVE-2022-30190) docx and rtf files

★ 32 · 2022-06-15
< Prev Page 7 / 21 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.