Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11114CVEs tracked
26004PoC repositories
17New in 24h
357PoC updated in 7 days
filters
Reset
All New Fresh PoC Hot Multi PoC Critical High

504 results

CVE-2024-26229
HOTMULTI PoC
PoCs 9 ★ 145 Last push 2026-07-20 (2 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 9 repositories
RalfHacker/CVE-2024-26229-exploit

Windows LPE

★ 145 · 2024-06-11
Cracked5pider/eop24-26229

A firebeam plugin that exploits the CVE-2024-26229 vulnerability to perform elevation of privilege from a unprivileged user

★ 41 · 2024-08-15
apkc/CVE-2024-26229-BOF

BOF implementations of CVE-2024-26229 for Cobalt Strike and BruteRatel

★ 29 · 2024-06-13
team-MineDEV/CVE-2024-26229

Windows CSC服务特权提升漏洞。 当程序向缓冲区写入的数据超出其处理能力时,就会发生基于堆的缓冲区溢出,从而导致多余的数据溢出到相邻的内存区域。这种溢出会损坏内存,并可能使攻击者能够执行任意代码或未经授权访问系统。本质上,攻击者可以编写触发溢出的恶意代码或输入,从而控制受影响的系统、执行任意命令、安装恶意软…

★ 11 · 2024-06-16
dkstar11q/CVE-2024-26229-lpe

CWE-781: Improper Address Validation in IOCTL with METHOD_NEITHER I/O Control Code

★ 0 · 2024-06-10
mqxmm/CVE-2024-26229
★ 0 · 2024-10-13
shinspace92/cve-2024-26229

Nim touch up of CVE 2024 26229

★ 0 · 2026-07-20
vettrivel007/CVE-2024-26229

Windows LPE

★ 0 · 2026-03-27
CVE-2023-36802
HOTMULTI PoC
PoCs 6 ★ 163 Last push 2026-07-16 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 6 repositories
chompie1337/Windows_MSKSSRV_LPE_CVE-2023-36802

LPE exploit for CVE-2023-36802

★ 163 · 2023-10-10
Nero22k/cve-2023-36802

Exploit for CVE-2023-36802 targeting MSKSSRV.SYS driver

★ 110 · 2023-10-26
x0rb3l/CVE-2023-36802-MSKSSRV-LPE

PoC for CVE-2023-36802 Microsoft Kernel Streaming Service Proxy

★ 35 · 2023-10-24
4zur-0312/CVE-2023-36802

CVE-2023-36802 ITW case

★ 14 · 2023-10-25
rahul0xkr/Reproducing-CVE-2023-36802

Reverse engineering and vulnerability research on CVE-2023-36802, focusing on object type confusion in mksssrv.sys.

★ 0 · 2025-11-12
nhh9905/CVE-2023-36802

Old CVE, but new way to leak everything.

★ 0 · 2026-07-16
PoCs 4 ★ 232 Last push 2026-07-16 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 4 repositories
MrAle98/CVE-2025-21333-POC

POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY

★ 232 · 2025-04-12
nu1lptr0/CVE-2025-21333

LPE due to integer truncation in vskrnlintvsp.sys

★ 23 · 2026-05-05
aleongx/KQL_sentinel_CVE-2025-21333

KQL para deteccion de CVE-2025-21333 en Sentinel

★ 0 · 2025-03-11
uname1able/CVE-2025-21333
★ 0 · 2026-07-16
CVE-2019-6447
HOTMULTI PoC
PoCs 13 ★ 679 Last push 2026-07-15 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 13 repositories
fs0c131y/ESFileExplorerOpenPortVuln

ES File Explorer Open Port Vulnerability - CVE-2019-6447

★ 679 · 2023-09-28
Chethine/EsFileExplorer-CVE-2019-6447

Exploiting Android Vulnerability in ES File Explorer

★ 3 · 2022-07-08
SandaRuFdo/ES-File-Explorer-Open-Port-Vulnerability---CVE-2019-6447

ES File Explorer Open Port Vulnerability - CVE-2019-6447

★ 0 · 2020-05-14
h3x0v3rl0rd/CVE-2019-6447
★ 0 · 2025-06-05
julio-cfa/POC-ES-File-Explorer-CVE-2019-6447

Very basic bash script to exploit the CVE-2019-6447.

★ 0 · 2021-09-13
febinrev/CVE-2019-6447-ESfile-explorer-exploit

ES File Explorer v4.1.9.7.4 Open port vulnerability exploit. CVE-2019-6447

★ 0 · 2021-10-18
Kayky-cmd/CVE-2019-6447--.
★ 0 · 2024-07-30
VinuKalana/CVE-2019-6447-Android-Vulnerability-in-ES-File-Explorer

This repository is developed to understand CVE-2019-6447

★ 0 · 2022-06-15
CVE-2019-18634
HOTMULTI PoC
PoCs 15 ★ 238 Last push 2026-07-14 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 15 repositories
saleemrashid/sudo-cve-2019-18634

Proof of Concept for CVE-2019-18634

★ 238 · 2021-09-12
Plazmaz/CVE-2019-18634

A functional exploit for CVE-2019-18634, a BSS overflow in sudo's pwfeedback feature that allows for for privesc

★ 59 · 2020-02-19
aesophor/CVE-2019-18634

My n-day exploit for CVE-2019-18634 (local privilege escalation)

★ 5 · 2021-08-14
chanbakjsd/CVE-2019-18634

A reproduction of CVE-2019-18634, sudo privilege escalation with buffer overflow.

★ 3 · 2024-04-14
N1et/CVE-2019-18634

An Python Exploit for Sudo vulnerability CVE-2019-18634

★ 2 · 2021-08-11
dukptkey/CVE-2019-18634

exploit for sudo CVE-2019-18634

★ 1 · 2022-11-07
edsonjt81/sudo-cve-2019-18634
★ 0 · 2021-04-25
paras1te-x/CVE-2019-18634

exploit

★ 0 · 2021-05-05
CVE-2025-33073
HOTMULTI PoC
PoCs 11 ★ 719 Last push 2026-07-13 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 11 repositories
mverschu/CVE-2025-33073

PoC Exploit for the NTLM reflection SMB flaw.

★ 719 · 2026-02-18
uziii2208/CVE-2025-33073

Universal exploitation tool for CVE-2025-33073 targeting Windows Domain Controllers with DNSAdmins privileges and WinRM enabled.

★ 67 · 2025-11-14
obscura-cert/CVE-2025-33073
★ 1 · 2025-06-28
starscow/CVE-2025-33073

PoC Exploit for the NTLM reflection SMB flaw.

★ 0 · 2025-06-15
matejsmycka/CVE-2025-33073-checker

This rough PoC checker script tests targets for CVE-2025-33073 vulnerability by attempting to perform NTLM reflection attacks using NTLM auth coercion via samb…

★ 0 · 2025-07-31
cve-2025-33073/cve-2025-33073
★ 0 · 2025-09-06
CVE-2019-0232
HOTMULTI PoC
PoCs 15 ★ 190 Last push 2026-07-12 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 15 repositories
pyn3rd/CVE-2019-0232

Apache Tomcat Remote Code Execution on Windows

★ 190 · 2019-11-27
jas502n/CVE-2019-0232

Apache Tomcat Remote Code Execution on Windows - CGI-BIN

★ 82 · 2019-04-17
jaiguptanick/CVE-2019-0232

Vulnerability analysis and PoC for the Apache Tomcat - CGIServlet enableCmdLineArguments Remote Code Execution (RCE)

★ 33 · 2021-09-04
setrus/CVE-2019-0232

CVE-2019-0232-Remote Code Execution on Apache Tomcat 7.0.42

★ 20 · 2019-11-21
cyy95/CVE-2019-0232-EXP
★ 3 · 2019-05-23
Dharan10/CVE-2019-0232

Hi this is a revised and enhanced code for CVE-2019-0232

★ 2 · 2024-12-29
PoCs 4 ★ 206 Last push 2026-07-12 (2 months, 3 weeks ago)

Fetching description from NVD…

Show 4 repositories
exploits-forsale/themebleed

Proof-of-Concept for CVE-2023-38146 ("ThemeBleed")

★ 206 · 2023-09-13
Jnnshschl/CVE-2023-38146

PoC for the ThemeBleed Windows 11 CVE-2023-38146 written in python using impacket. https://jnns.de/posts/cve-2023-38146-poc/

★ 27 · 2024-05-01
Durge5/ThemeBleedPy

A proof of concept using python for the CVE-2023-38146 "ThemeBleed"

★ 2 · 2023-12-12
CH0ico/CVE-2023-38146-Poc

Better POC

★ 0 · 2026-07-12
CVE-2021-21974
HOTMULTI PoC
PoCs 7 ★ 186 Last push 2026-07-09 (3 months ago)

Fetching description from NVD…

Show 7 repositories
Shadow0ps/CVE-2021-21974

POC for CVE-2021-21974 VMWare ESXi RCE Exploit

★ 186 · 2026-03-10
Aiyakami/CVE-2021-21974

自研针对ESXI 堆栈溢出的CVE-2021-21974 POC,只支持项目给出的的目标和环境,用于学习和研究

★ 5 · 2026-07-09
n2x4/Feb2023-CVE-2021-21974-OSINT

Analysis of the ransom demands from Shodan results

★ 2 · 2023-02-06
CYBERTHREATANALYSIS/ESXi-Ransomware-Scanner-mi

ESXi EZ - A custom scanner that takes list of IPs either in JSON, CSV or individually and checks for infection CVE-2021-21974

★ 2 · 2023-02-08
hateme021202/cve-2021-21974

Nmap NSE script for cve-2021-21974

★ 0 · 2023-10-19
mercylessghost/CVE-2021-21974
★ 0 · 2025-01-10
abirasecurity/CVE-2021-21974_vuln_dectection

CVE-2021-21974 Vulnerability Detection Tool Safe PoC that identifies vulnerable SLP implementations without exploitation

★ 0 · 2025-09-04
CVE-2022-22954
HOTMULTI PoC
PoCs 26 ★ 1484 Last push 2026-07-08 (3 months ago)

Fetching description from NVD…

Show 8 of 26 repositories
Schira4396/VcenterKiller

一款针对Vcenter的综合利用工具,包含目前最主流的CVE-2021-21972、CVE-2021-21985以及CVE-2021-22005、One Access的CVE-2022-22954、CVE-2022-22972/31656以及log4j,提供一键上传webshell,命令执行或者上传公钥使用SSH免密…

★ 1484 · 2024-04-25
sherlocksecurity/VMware-CVE-2022-22954

POC for VMWARE CVE-2022-22954

★ 279 · 2022-04-13
bewhale/CVE-2022-22954

CVE-2022-22954 VMware Workspace ONE Access freemarker SSTI 漏洞 命令执行、批量检测脚本、文件写入

★ 68 · 2022-04-26
tunelko/CVE-2022-22954-PoC

VMware Workspace ONE Access and Identity Manager RCE via SSTI - Test script for shodan, file or manual.

★ 16 · 2024-02-13
jax7sec/CVE-2022-22954

提供批量扫描URL以及执行命令功能。Workspace ONE Access 模板注入漏洞,可执行任意代码

★ 12 · 2022-04-15
Vulnmachines/VMWare_CVE-2022-22954

CVE-2022-22954 is a server-side template injection vulnerability in the VMware Workspace ONE Access and Identity Manager

★ 11 · 2022-04-11
DrorDvash/CVE-2022-22954_VMware_PoC

PoC for CVE-2022-22954 - VMware Workspace ONE Access Freemarker Server-Side Template Injection

★ 10 · 2022-04-12
orwagodfather/CVE-2022-22954
★ 8 · 2022-06-03
CVE-2021-42278
HOTMULTI PoC
PoCs 6 ★ 1069 Last push 2026-07-07 (3 months ago)

Fetching description from NVD…

Show 6 repositories
safebuffer/sam-the-admin

Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user

★ 1069 · 2022-07-10
Ridter/noPac

Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user

★ 1022 · 2023-01-29
ly4k/Pachine

Python implementation for CVE-2021-42278 (Active Directory Privilege Escalation)

★ 278 · 2022-01-13
waterrr/noPac

Exploiting CVE-2021-42278 and CVE-2021-42287

★ 6 · 2021-12-13
cybersecurityworks553/noPac-detection

Detection script for CVE-2021-42278 and CVE-2021-42287

★ 2 · 2021-12-27
xLTJ/noPac

Go implementation of NoPac, exploiting CVE-2021-42278 and CVE-2021-42287

★ 0 · 2026-07-07
CVE-2022-29464
HOTMULTI PoC
PoCs 29 ★ 377 Last push 2026-07-06 (3 months ago)

Fetching description from NVD…

Show 8 of 29 repositories
hakivvi/CVE-2022-29464

WSO2 RCE (CVE-2022-29464) exploit and writeup.

★ 377 · 2022-04-27
dsssssssm/WSOB

😭 WSOB is a python tool created to exploit the new vulnerability on WSO2 assigned as CVE-2022-29464.

★ 26 · 2023-05-23
sh4den/CVE-2022-29464

A bots loader for CVE-2022-29464 with multithreading

★ 10 · 2026-07-06
Ap0dexMe0/CVE-2022-29464

Perform With Mass Exploits In WSO Management.

★ 9 · 2023-07-24
gbrsh/CVE-2022-29464

RCE exploit for WSO2

★ 7 · 2022-11-14
Lidong-io/cve-2022-29464

cve-2022-29464 批量脚本

★ 5 · 2022-04-22
hev0x/CVE-2022-29464

WSO2 RCE (CVE-2022-29464)

★ 5 · 2022-04-28
Chocapikk/CVE-2022-29464

Python script to exploit CVE-2022-29464 (mass mode)

★ 5 · 2022-06-01
PoCs 4 ★ 115 Last push 2026-07-04 (3 months ago)

Fetching description from NVD…

Show 4 repositories
p0dalirius/CVE-2022-36446-Webmin-Software-Package-Updates-RCE

A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.

★ 115 · 2025-01-31
emirpolatt/CVE-2022-36446

CVE-2022-36446 - Webmin 1.996 Remote Code Execution

★ 3 · 2022-09-09
Kang3639/CVE-2022-36446

CVE-2022-36446 POC 실습

★ 0 · 2024-06-11
darnabin/CVE-2022-36446-Webmin-RCE

Script de python para Webmin 1.996

★ 0 · 2026-07-04
CVE-2021-33044
HOTMULTI PoC
PoCs 7 ★ 199 Last push 2026-07-03 (3 months ago)

Fetching description from NVD…

Show 7 repositories
bp2008/DahuaLoginBypass

Chrome extension that uses vulnerabilities CVE-2021-33044 and CVE-2021-33045 to log in to Dahua cameras without authentication.

★ 199 · 2026-07-03
umair-aziz025/dahua-cve-research

Dahua IP camera CVE research toolkit (CVE-2021-33044/33045, CVE-2025-31700/31701)

★ 29 · 2026-04-02
Spy0x7/CVE-2021-33044

Dahua IPC/VTH/VTO devices auth bypass exploit

★ 5 · 2021-10-18
haingn/LoHongCam-CVE-2021-33044
★ 4 · 2023-10-22
Baza-NATO/CVE-2021-33044
★ 1 · 2026-01-25
eagle-nett/DAHUA_AUTH-BYPASS-CVE-2021-33044

Camera Dahua Research lỗ hổng CVE-2021-33044

★ 1 · 2026-04-12
litndat/Camera-Dahua-Research-l-h-ng-CVE-2021-33044

DAHUA_AUTH-BYPASS-CVE-2021-33044

★ 0 · 2026-06-24
CVE-2020-5902
HOTMULTI PoC
PoCs 55 ★ 374 Last push 2026-07-01 (3 months, 1 week ago)

Fetching description from NVD…

Show 8 of 55 repositories
jas502n/CVE-2020-5902

CVE-2020-5902 BIG-IP

★ 374 · 2021-10-13
yassineaboukir/CVE-2020-5902

Proof of concept for CVE-2020-5902

★ 70 · 2020-07-06
theLSA/f5-bigip-rce-cve-2020-5902

F5 BIG-IP RCE CVE-2020-5902 automatic check tool

★ 62 · 2020-07-12
aqhmal/CVE-2020-5902-Scanner

Automated script for F5 BIG-IP scanner (CVE-2020-5902) using hosts retrieved from Shodan API.

★ 55 · 2022-12-08
yasserjanah/CVE-2020-5902

exploit code for F5-Big-IP (CVE-2020-5902)

★ 43 · 2023-05-22
dunderhay/CVE-2020-5902

Python script to exploit F5 Big-IP CVE-2020-5902

★ 36 · 2024-03-19
zhzyker/CVE-2020-5902

F5 BIG-IP 任意文件读取+远程命令执行RCE

★ 13 · 2020-07-08
CVE-2020-0796
HOTMULTI PoC
PoCs 86 ★ 1359 Last push 2026-06-26 (3 months, 1 week ago)

Fetching description from NVD…

Show 8 of 86 repositories
danigargu/CVE-2020-0796

CVE-2020-0796 - Windows SMBv3 LPE exploit #SMBGhost

★ 1359 · 2020-12-07
ly4k/SMBGhost

Scanner for CVE-2020-0796 - SMBv3 RCE

★ 722 · 2020-10-01
jamf/CVE-2020-0796-RCE-POC

CVE-2020-0796 Remote Code Execution POC

★ 571 · 2020-06-09
Barriuso/SMBGhost_AutomateExploitation

SMBGhost (CVE-2020-0796) Automate Exploitation and Detection

★ 359 · 2022-03-30
eerykitty/CVE-2020-0796-PoC

PoC for triggering buffer overflow via CVE-2020-0796

★ 331 · 2023-02-26
jamf/CVE-2020-0796-LPE-POC

CVE-2020-0796 Local Privilege Escalation POC

★ 244 · 2020-04-02
Rvn0xsy/CVE_2020_0796_CNA

Cobalt Strike AggressorScripts CVE-2020-0796

★ 74 · 2020-09-09
rsmudge/CVE-2020-0796-BOF
★ 70 · 2020-09-17
CVE-2022-37706
HOTMULTI PoC
PoCs 8 ★ 323 Last push 2026-06-24 (3 months, 2 weeks ago)

Fetching description from NVD…

Show 8 repositories
MaherAzzouzi/CVE-2022-37706-LPE-exploit

A reliable exploit + write-up to elevate privileges to root. (Tested on Ubuntu 22.04)

★ 323 · 2022-09-19
ECU-10525611-Xander/CVE-2022-37706

All Credit to MaherAzzouzi (https://github.com/MaherAzzouzi/CVE-2022-37706-LPE-exploit). This is a copy of the exploit for CTFs

★ 2 · 2022-09-18
KaoXx/CVE-2022-37706
★ 1 · 2024-09-10
d3ndr1t30x/CVE-2022-37706

Privilege escaltion exploit script for Boardlight machine on HackTheBox. I had access as the Larissa user and ran this script from the /tmp directory; script h…

★ 1 · 2024-12-10
junnythemarksman/CVE-2022-37706

Exploit created by nu11secur1ty (https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2022-37706)

★ 0 · 2024-06-03
TACTICAL-HACK/CVE-2022-37706-SUID

CVE-2022-37706-Enlightenment v0.25.3 - Privilege escalation

★ 0 · 2024-07-20
sanan2004/CVE-2022-37706

PoC

★ 0 · 2024-08-18
Massive43/CVE-2022-37706

ROOT TOOL

★ 0 · 2026-06-24
CVE-2024-36991
HOTMULTI PoC
PoCs 10 ★ 126 Last push 2026-06-21 (3 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 10 repositories
bigb0x/CVE-2024-36991

POC for CVE-2024-36991: This exploit will attempt to read Splunk /etc/passwd file.

★ 126 · 2024-07-12
Mr-xn/CVE-2024-36991

Path Traversal On The "/Modules/Messaging/" Endpoint In Splunk Enterprise On Windows

★ 9 · 2024-07-06
jaytiwari05/CVE-2024-36991

Critical Splunk Vulnerability CVE-2024-36991: Patch Now to Prevent Arbitrary File Reads

★ 9 · 2025-03-30
gunzf0x/CVE-2024-36991

Proof of Concept for CVE-2024-36991. Path traversal for Splunk versions below 9.2.2, 9.1.5, and 9.0.10 for Windows which allows arbitrary file read.

★ 4 · 2025-03-31
Cappricio-Securities/CVE-2024-36991

Path traversal vulnerability in Splunk Enterprise on Windows versions below 9.2.2, 9.1.5, and 9.0.10 that allows reading sensitive files.

★ 3 · 2024-07-10
0xFZin/CVE-2024-36991

Exploit for CVE-2024-36991 , written by me, enumerates a handfull of things, not all, cause not needed.

★ 3 · 2026-06-21
th3gokul/CVE-2024-36991

CVE-2024-36991: Path traversal that affects Splunk Enterprise on Windows versions below 9.2.2, 9.1.5, and 9.0.10.

★ 2 · 2024-07-06
TheStingR/CVE-2024-36991-Tool

This binary POC automates the exploitation of CVE-2024-36991 by sending crafted curl requests to a vulnerable Splunk instance. It retrieves sensitive files and…

★ 2 · 2025-10-30
CVE-2021-3560
HOTMULTI PoC
PoCs 33 ★ 126 Last push 2026-06-19 (3 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 33 repositories
Almorabea/Polkit-exploit

Privilege escalation with polkit - CVE-2021-3560

★ 125 · 2021-06-20
RicterZ/CVE-2021-3560-Authentication-Agent

PolicyKit CVE-2021-3560 Exploit (Authentication Agent)

★ 116 · 2022-05-02
swapravo/polkadots

CVE-2021-3560 Local PrivEsc Exploit

★ 82 · 2021-06-12
hakivvi/CVE-2021-3560

a reliable C based exploit and writeup for CVE-2021-3560.

★ 40 · 2021-06-23
winmin/CVE-2021-3560

PolicyKit CVE-2021-3560 Exploitation (Authentication Agent)

★ 25 · 2023-03-06
AssassinUKG/Polkit-CVE-2021-3560
★ 24 · 2021-06-29
UNICORDev/exploit-CVE-2021-3560

Exploit for CVE-2021-3560 (Polkit) - Local Privilege Escalation

★ 12 · 2022-06-26
CVE-2017-7269
HOTMULTI PoC
PoCs 19 ★ 135 Last push 2026-06-16 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 19 repositories
zcgonvh/cve-2017-7269

fixed msf module for cve-2017-7269

★ 135 · 2017-03-30
g0rx/iis6-exploit-2017-CVE-2017-7269

iis6 exploit 2017 CVE-2017-7269

★ 92 · 2023-02-04
lcatro/CVE-2017-7269-Echo-PoC

CVE-2017-7269 回显PoC ,用于远程漏洞检测..

★ 89 · 2018-10-27
zcgonvh/cve-2017-7269-tool

CVE-2017-7269 to webshell or shellcode loader

★ 88 · 2017-05-16
eliuha/webdav_exploit

An exploit for Microsoft IIS 6.0 CVE-2017-7269

★ 22 · 2017-03-29
Al1ex/CVE-2017-7269
★ 11 · 2018-04-28
slimpagey/IIS_6.0_WebDAV_Ruby

Ruby Exploit for IIS 6.0 Buffer Overflow (CVE-2017-7269)

★ 5 · 2017-04-06
h3x0v3rl0rd/CVE-2017-7269
★ 5 · 2021-07-16
CVE-2024-30088
HOTMULTI PoC
PoCs 10 ★ 527 Last push 2026-06-16 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 10 repositories
exploits-forsale/collateral-damage

Kernel exploit for Xbox SystemOS using CVE-2024-30088

★ 527 · 2025-07-13
tykawaii98/CVE-2024-30088
★ 290 · 2024-07-31
Zombie-Kaiser/CVE-2024-30088-Windows-poc

该漏洞存在于 NtQueryInformationToken 函数中,特别是在处理AuthzBasepCopyoutInternalSecurityAttributes 函数时,该漏洞源于内核在操作对象时对锁定机制的不当管理,这一失误可能导致恶意实体意外提升权限。

★ 45 · 2024-07-05
NextGenPentesters/CVE-2024-30088-

🆘New Windows Kernel Priviledge Escalation Vulnerability

★ 8 · 2024-06-27
Admin9961/CVE-2024-30088

Questa repository contiene una replica (tentativo di replica) scritto in Python per CVE-2024-30088.

★ 2 · 2024-07-27
Justintroup85/exploits-forsale-collateral-damage

Kernel exploit for Xbox SystemOS using CVE-2024-30088

★ 1 · 2024-08-25
repo4Chu/CVE-2024-30088__Windows-TOCTOU-exploit

This is a modified version of the original CVE-2024-30088 exploit, adapted to work in non-interactive environments (WinRM).

★ 1 · 2026-04-29
cyghtinc/cve-2024-30088-binary-LPE-PRIVIELEGE-ESCALATION-CYGHT-TOCTOU

compiled poc binary local privilege escalation by oilrig

★ 0 · 2025-10-06
CVE-2021-4045
HOTMULTI PoC
PoCs 6 ★ 120 Last push 2026-06-12 (3 months, 4 weeks ago)

Fetching description from NVD…

Show 6 repositories
hacefresko/CVE-2021-4045

Exploit for command injection vulnerability found in uhttpd binary from TP-Link Tapo c200 IP camera

★ 120 · 2024-10-31
0xbinder/CVE-2021-4045

🔐 "PWNTAPO: Unveiling Command Injection in TP-Link Tapo C200 Cameras (<= v1.1.16 Build 211209)" 🔓

★ 9 · 2023-12-27
jeffbezosispogg/CVE-2021-4045

TP-Link Tapo c200 ver <1.1.15 - Remote Code Execution (RCE)

★ 1 · 2022-10-08
DorskFR/tapodate

Sets up a local Tapo C200 using CVE-2021-4045

★ 1 · 2025-03-31
234329a423853/CVE-2021-4045

CVE-2021-4045 CVE-2021-4045 is a Command Injection vulnerability that allows Remote Code Execution in the TP-Link Tapo c200 IP camera. It affects all firmware …

★ 1 · 2025-12-11
kaleth4/CVE-2021-4045
★ 0 · 2026-06-12
CVE-2023-21768
HOTMULTI PoC
PoCs 14 ★ 506 Last push 2026-06-11 (3 months, 4 weeks ago)

Fetching description from NVD…

Show 8 of 14 repositories
chompie1337/Windows_LPE_AFD_CVE-2023-21768

LPE exploit for CVE-2023-21768

★ 506 · 2023-07-10
SamuelTulach/nullmap

Using CVE-2023-21768 to manual map kernel mode driver

★ 201 · 2023-03-10
Malwareman007/CVE-2023-21768

Windows_AFD_LPE_CVE-2023-21768

★ 66 · 2023-08-27
cl4ym0re/cve-2023-21768-compiled

cve-2023-21768

★ 27 · 2023-03-10
P4x1s/CVE-2023-21768-POC

CVE-2023-21768 Windows 11 22H2 系统本地提权 POC

★ 23 · 2023-03-22
xboxoneresearch/CVE-2023-21768-dotnet

C# / .NET version of CVE-2023-21768

★ 15 · 2024-09-06
h1bAna/CVE-2023-21768
★ 3 · 2023-04-05
CVE-2023-34362
HOTMULTI PoC
PoCs 15 ★ 140 Last push 2026-06-09 (4 months ago)

Fetching description from NVD…

Show 8 of 15 repositories
horizon3ai/CVE-2023-34362

MOVEit CVE-2023-34362

★ 140 · 2023-06-26
sfewer-r7/CVE-2023-34362

CVE-2023-34362: MOVEit Transfer Unauthenticated RCE

★ 65 · 2024-03-24
Malwareman007/CVE-2023-34362

POC for CVE-2023-34362 affecting MOVEit Transfer

★ 10 · 2023-07-09
kenbuckler/MOVEit-CVE-2023-34362

Repository with everything I have tracking the impact of MOVEit CVE-2023-34362

★ 6 · 2023-06-19
deepinstinct/MOVEit_CVE-2023-34362_IOCs

CVE-2023-34362-IOCs. More information on Deep Instinct's blog site.

★ 2 · 2023-06-06
errorfiathck/MOVEit-Exploit

an exploit of POC for CVE-2023-34362 affecting MOVEit Transfer

★ 2 · 2023-08-31
toorandom/moveit-payload-decrypt-CVE-2023-34362

This shellscript given the OrgKey 0 will parse the header of the base64 artifacts found in MOVEit Logs and decrypt the Serialized object used a payload

★ 1 · 2023-07-19
CVE-2024-0044
HOTMULTI PoC
PoCs 15 ★ 332 Last push 2026-06-06 (4 months ago)

Fetching description from NVD…

Show 8 of 15 repositories
0xbinder/CVE-2024-0044

CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13

★ 332 · 2024-12-02
canyie/CVE-2024-0044

RunAsAnyone: PoC and writeup for bypassing the initial patch of CVE-2024-0044, Android run-as any app vulnerability allowing privilege escalation from adb to i…

★ 180 · 2024-09-30
scs-labrat/android_autorooter

Exfiltrate sensitive user data from apps on Android 12 and 13 using CVE-2024-0044 vulnerability remotely

★ 80 · 2024-07-31
sridhar-sec/EvilDroid

EvilDroid automates the exploitation of CVE-2024-0044, installing malicious payloads on a target device and extracting sensitive data. It features automated AD…

★ 31 · 2025-09-06
Re13orn/CVE-2024-0044-EXP

利用 CVE-2024-0044 Android 权限提升下载任意目标App沙箱文件。

★ 16 · 2024-09-03
MrW0l05zyn/cve-2024-0044

CVE-2024-0044

★ 12 · 2024-08-24
hackerronin/CVE-2024-0044

a vulnerability affecting Android version 12 & 13

★ 6 · 2024-08-13
007CRIPTOGRAFIA/c-CVE-2024-0044

CVE-2024-0044: uma vulnerabilidade de alta gravidade do tipo "executar como qualquer aplicativo" que afeta as versões 12 e 13 do Android

★ 4 · 2024-07-11
< Prev Page 8 / 21 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.