Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11117CVEs tracked
26011PoC repositories
12New in 24h
346PoC updated in 7 days
filters
Reset
All New Fresh PoC Hot Multi PoC Critical High

803 results

CVE-2021-33044
HOTMULTI PoC
PoCs 7 ★ 199 Last push 2026-07-03 (3 months, 1 week ago)

Fetching description from NVD…

Show 7 repositories
bp2008/DahuaLoginBypass

Chrome extension that uses vulnerabilities CVE-2021-33044 and CVE-2021-33045 to log in to Dahua cameras without authentication.

★ 199 · 2026-07-03
umair-aziz025/dahua-cve-research

Dahua IP camera CVE research toolkit (CVE-2021-33044/33045, CVE-2025-31700/31701)

★ 29 · 2026-04-02
Spy0x7/CVE-2021-33044

Dahua IPC/VTH/VTO devices auth bypass exploit

★ 5 · 2021-10-18
haingn/LoHongCam-CVE-2021-33044
★ 4 · 2023-10-22
Baza-NATO/CVE-2021-33044
★ 1 · 2026-01-25
eagle-nett/DAHUA_AUTH-BYPASS-CVE-2021-33044

Camera Dahua Research lỗ hổng CVE-2021-33044

★ 1 · 2026-04-12
litndat/Camera-Dahua-Research-l-h-ng-CVE-2021-33044

DAHUA_AUTH-BYPASS-CVE-2021-33044

★ 0 · 2026-06-24
CVE-2016-6210
MULTI PoC
PoCs 7 ★ 3 Last push 2026-07-02 (3 months, 1 week ago)

Fetching description from NVD…

Show 7 repositories
justlce/CVE-2016-6210-Exploit

OpenSSH Username Enumeration - CVE-2016-6210

★ 3 · 2019-08-25
goomdan/CVE-2016-6210-exploit

Custom exploit written for enumerating usernames as per CVE-2016-6210

★ 1 · 2024-03-23
wabiyagi/CVE-2016-6210

User name enumeration against SSH daemons affected by CVE-2016-6210.

★ 1 · 2025-03-14
KiPhuong/cve-2016-6210

PoC of cve-2016-6210

★ 0 · 2025-07-17
Alisha-chaudhary/ssh-enum

This project explores whether modern OpenSSH reveals valid usernames through subtle response or timing differences. CVE-2016-6210 user enumeration investigatio…

★ 0 · 2026-07-02
CVE-2020-5902
HOTMULTI PoC
PoCs 55 ★ 374 Last push 2026-07-01 (3 months, 1 week ago)

Fetching description from NVD…

Show 8 of 55 repositories
jas502n/CVE-2020-5902

CVE-2020-5902 BIG-IP

★ 374 · 2021-10-13
yassineaboukir/CVE-2020-5902

Proof of concept for CVE-2020-5902

★ 70 · 2020-07-06
theLSA/f5-bigip-rce-cve-2020-5902

F5 BIG-IP RCE CVE-2020-5902 automatic check tool

★ 62 · 2020-07-12
aqhmal/CVE-2020-5902-Scanner

Automated script for F5 BIG-IP scanner (CVE-2020-5902) using hosts retrieved from Shodan API.

★ 55 · 2022-12-08
yasserjanah/CVE-2020-5902

exploit code for F5-Big-IP (CVE-2020-5902)

★ 43 · 2023-05-22
dunderhay/CVE-2020-5902

Python script to exploit F5 Big-IP CVE-2020-5902

★ 36 · 2024-03-19
zhzyker/CVE-2020-5902

F5 BIG-IP 任意文件读取+远程命令执行RCE

★ 13 · 2020-07-08
CVE-2025-24054
MULTI PoC
PoCs 10 ★ 22 Last push 2026-07-01 (3 months, 1 week ago)

Fetching description from NVD…

Show 8 of 10 repositories
helidem/CVE-2025-24054_CVE-2025-24071-PoC

Proof of Concept for the NTLM Hash Leak via .library-ms CVE-2025-24054 / CVE-2025-24071

★ 22 · 2025-11-05
basekilll/CVE-2025-24054_PoC

PoC - CVE-2025-24071 / CVE-2025-24054, NTMLv2 hash'leri alınabilen bir vulnerability

★ 4 · 2025-04-18
Untouchable17/CVE-2025-24054

Windows File Explorer Zero Click NTLMv2-SSP Hash Disclosure

★ 2 · 2025-11-24
moften/CVE-2025-24054

Vulnerabilidad NTLM (CVE-2025-24054) explotada para robo de hashes

★ 1 · 2025-05-19
S4mma3l/CVE-2025-24054
★ 0 · 2025-05-01
Wind010/CVE-2025-24054_PoC

A proof of concept for CVE-2025-24054/CVE-2025-24071

★ 0 · 2025-11-09
SecurityLayer404/CVE-2025-24054-24071---Metasploit-Module

Módulo de Metasploit para explotar CVE-2025-24054 (ex 24071). Exploit de filtración NTLM integrado en Metasploit para vectores de ataque basados en bibliotecas…

★ 0 · 2026-04-01
CVE-2023-41892
MULTI PoC
PoCs 7 ★ 11 Last push 2026-07-01 (3 months, 1 week ago)

Fetching description from NVD…

Show 7 repositories
0xfalafel/CraftCMS_CVE-2023-41892

Exploit for CVE-2023-41892

★ 11 · 2023-12-26
diegaccio/Craft-CMS-Exploit

CVE-2023-41892 Reverse Shell

★ 5 · 2024-02-01
zaenhaxor/CVE-2023-41892

CVE-2023-41892 - Craft CMS Remote Code Execution (RCE)

★ 3 · 2023-10-07
acesoyeo/CVE-2023-41892

A Craft CMS vulnerability that allows Remote Code Execution (RCE).

★ 0 · 2024-02-26
user01-1/CVE-2023-41892_poc

Customized this for my own use

★ 0 · 2025-08-21
lyccyc/CVE-2023-41892_PoC
★ 0 · 2026-07-01
CVE-2026-22557
MULTI PoC
PoCs 5 ★ 4 Last push 2026-06-30 (3 months, 1 week ago)

Fetching description from NVD…

Show 5 repositories
ThePotatoOfDoom/CVE-2026-22557-PoC

PoC for UniFi Network Application Pre-Auth Path Traversal (CVE-2026-22557)

★ 4 · 2026-04-11
0xBlackash/CVE-2026-22557

CVE-2026-22557

★ 3 · 2026-04-05
BishopFox/CVE-2026-22557-check

Safely detect whether a UniFi Network Application controller is vulnerable to CVE-2026-22557

★ 1 · 2026-06-01
GarethMSheldon/cve-2026-22557-unifi-detection

Detection content for CVE-2026-22557 — UniFi Network Application unauthenticated path traversal (CVSS 10.0). Includes YARA, Sigma, KQL, Splunk SPL, Sysmon conf…

★ 0 · 2026-03-22
gagaltotal/CVE-2026-22557-Path-Traversal-Ubiquti-UniFi

CVE-2026-22557 Path Traversal Ubiquti UniFi Network Application

★ 0 · 2026-06-30
CVE-2025-0133
MULTI PoC
PoCs 8 ★ 20 Last push 2026-06-29 (3 months, 1 week ago)

Fetching description from NVD…

Show 8 repositories
ynsmroztas/-CVE-2025-0133-GlobalProtect-XSS

CVE-2025-0133 GlobalProtect XSS

★ 20 · 2025-06-17
inteleon404/CVE-2025-0133

Reflected XSS vulnerability found in Palo Alto GlobalProtect Gateway & Portal. Attackers can inject malicious scripts via crafted requests.

★ 11 · 2025-06-24
dodiorne/cve-2025-0133
★ 5 · 2025-05-23
radityahack/cve-2025-0133

CVE-2025-0133 Scanner | Palo Alto GlobalProtect XSS Checker

★ 1 · 2026-06-29
wiseep/CVE-2025-0133

Palo Alto - Global Protect - Reflected XSS

★ 0 · 2025-06-18
adhamelhansye/CVE-2025-0133

CVE-2025-0133 Exploit

★ 0 · 2025-09-23
cruxN3T/CVE-2025-0133

Scope-aware bug bounty pipeline for CVE-2025-0133 (Palo Alto PAN-OS GlobalProtect reflected XSS). Shodan → H1/BC scope match → safe canary validation → report …

★ 0 · 2026-05-06
CVE-2026-23918
MULTI PoC
PoCs 15 ★ 32 Last push 2026-06-29 (3 months, 1 week ago)

Fetching description from NVD…

Show 8 of 15 repositories
striga-ai/CVE-2026-23918

Double-free in Apache httpd mod_http2 stream cleanup leading to pre-auth RCE.

★ 32 · 2026-05-11
xeloxa/CVE-2026-23918-Apache-H2-PoC

Proof-of-Concept exploit for CVE-2026-23918 (Apache mod_http2 double-free). Features multi-mode DoS (Rapid-RST, Slow-Drip) and passive RCE/vulnerability detect…

★ 23 · 2026-05-06
rhasan-com/CVE-2026-23918

Apache HTTP/2 double-free vulnerability PoC (CVE-2026-23918)

★ 8 · 2026-05-06
qassam-315/CVE-2026-23918-Elite-Auditor

Elite reconnaissance script for auditing Apache's HTTP/2 stack against memory corruption (CVE-2026-23918). Features ALPN protocol forcing and monochrome dashbo…

★ 6 · 2026-05-05
12lie20/CVE-2026-23918-test

This repository contains a Proof of Concept (PoC) demonstrating the Double Free vulnerability (CVE-2026-23918) in Apache HTTP Server 2.4.66 `mod_http2`.

★ 4 · 2026-05-05
hackervlogofficial/CVE-2026-23918

This is a proactive tool for security auditing. For your GitHub repository, you’ll want a description that highlights its safety (non-intrusive) and its specif…

★ 1 · 2026-05-06
alt3kx/CVE-2026-23918

CVE-2026-23918 Apache mod_http2 Double-Free Detector

★ 1 · 2026-05-07
rshosting/Apache-CVE-2026-23918-fix

Upgrade to Apache 2.4.67 to fix CVE-2026-23918 vulneribility

★ 0 · 2026-05-05
CVE-2020-0796
HOTMULTI PoC
PoCs 86 ★ 1359 Last push 2026-06-26 (3 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 86 repositories
danigargu/CVE-2020-0796

CVE-2020-0796 - Windows SMBv3 LPE exploit #SMBGhost

★ 1359 · 2020-12-07
ly4k/SMBGhost

Scanner for CVE-2020-0796 - SMBv3 RCE

★ 722 · 2020-10-01
jamf/CVE-2020-0796-RCE-POC

CVE-2020-0796 Remote Code Execution POC

★ 571 · 2020-06-09
Barriuso/SMBGhost_AutomateExploitation

SMBGhost (CVE-2020-0796) Automate Exploitation and Detection

★ 359 · 2022-03-30
eerykitty/CVE-2020-0796-PoC

PoC for triggering buffer overflow via CVE-2020-0796

★ 331 · 2023-02-26
jamf/CVE-2020-0796-LPE-POC

CVE-2020-0796 Local Privilege Escalation POC

★ 244 · 2020-04-02
Rvn0xsy/CVE_2020_0796_CNA

Cobalt Strike AggressorScripts CVE-2020-0796

★ 74 · 2020-09-09
rsmudge/CVE-2020-0796-BOF
★ 70 · 2020-09-17
CVE-2022-37706
HOTMULTI PoC
PoCs 8 ★ 323 Last push 2026-06-24 (3 months, 2 weeks ago)

Fetching description from NVD…

Show 8 repositories
MaherAzzouzi/CVE-2022-37706-LPE-exploit

A reliable exploit + write-up to elevate privileges to root. (Tested on Ubuntu 22.04)

★ 323 · 2022-09-19
ECU-10525611-Xander/CVE-2022-37706

All Credit to MaherAzzouzi (https://github.com/MaherAzzouzi/CVE-2022-37706-LPE-exploit). This is a copy of the exploit for CTFs

★ 2 · 2022-09-18
KaoXx/CVE-2022-37706
★ 1 · 2024-09-10
d3ndr1t30x/CVE-2022-37706

Privilege escaltion exploit script for Boardlight machine on HackTheBox. I had access as the Larissa user and ran this script from the /tmp directory; script h…

★ 1 · 2024-12-10
junnythemarksman/CVE-2022-37706

Exploit created by nu11secur1ty (https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2022-37706)

★ 0 · 2024-06-03
TACTICAL-HACK/CVE-2022-37706-SUID

CVE-2022-37706-Enlightenment v0.25.3 - Privilege escalation

★ 0 · 2024-07-20
sanan2004/CVE-2022-37706

PoC

★ 0 · 2024-08-18
Massive43/CVE-2022-37706

ROOT TOOL

★ 0 · 2026-06-24
CVE-2021-21425
MULTI PoC
PoCs 5 ★ 12 Last push 2026-06-23 (3 months, 2 weeks ago)

Fetching description from NVD…

Show 5 repositories
CsEnox/CVE-2021-21425

GravCMS Unauthenticated Arbitrary YAML Write/Update leads to Code Execution (CVE-2021-21425)

★ 12 · 2023-04-18
bluetoothStrawberry/cve-2021-21425

working exploit for the old cve-2021-21425 grav cms 1.7.10 vuln

★ 2 · 2024-11-13
grey-master-a/GravCMS_Nmap_Script

It is a nmap script for GravCMS vulnerability (CVE-2021-21425)

★ 0 · 2022-01-19
afifudinmtop/CVE-2021-21425
★ 0 · 2026-01-21
s1lentf00thold/CVE-2021-21425-RCE
★ 0 · 2026-06-23
CVE-2015-8562
MULTI PoC
PoCs 11 ★ 12 Last push 2026-06-22 (3 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 11 repositories
VoidSec/Joomla_CVE-2015-8562

A proof of concept for Joomla's CVE-2015-8562 vulnerability (Object Injection RCE)

★ 12 · 2024-05-03
ZaleHack/joomla_rce_CVE-2015-8562

All versions of the Joomla! below 3.4.6 are known to be vulnerable. But exploitation is possible with PHP versions below 5.5.29, 5.6.13 and below 5.5.

★ 8 · 2016-01-04
dmonst3r/CVE-2015-8562

Joomla 1.5 - 3.4.5 Object Injection RCE X-Forwarded-For header

★ 4 · 2017-01-08
RobinHoutevelts/Joomla-CVE-2015-8562-PHP-POC

A proof of concept for Joomla's CVE-2015-8562 vulnerability

★ 2 · 2016-01-05
Caihuar/Joomla-cve-2015-8562
★ 1 · 2022-09-23
atcasanova/cve-2015-8562-exploit

CVE-2015-8562 Exploit in bash

★ 0 · 2016-02-08
xnorkl/Joomla_Payload

Adapted CVE-2015-8562 payload

★ 0 · 2020-02-07
CVE-2024-36991
HOTMULTI PoC
PoCs 10 ★ 126 Last push 2026-06-21 (3 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 10 repositories
bigb0x/CVE-2024-36991

POC for CVE-2024-36991: This exploit will attempt to read Splunk /etc/passwd file.

★ 126 · 2024-07-12
Mr-xn/CVE-2024-36991

Path Traversal On The "/Modules/Messaging/" Endpoint In Splunk Enterprise On Windows

★ 9 · 2024-07-06
jaytiwari05/CVE-2024-36991

Critical Splunk Vulnerability CVE-2024-36991: Patch Now to Prevent Arbitrary File Reads

★ 9 · 2025-03-30
gunzf0x/CVE-2024-36991

Proof of Concept for CVE-2024-36991. Path traversal for Splunk versions below 9.2.2, 9.1.5, and 9.0.10 for Windows which allows arbitrary file read.

★ 4 · 2025-03-31
Cappricio-Securities/CVE-2024-36991

Path traversal vulnerability in Splunk Enterprise on Windows versions below 9.2.2, 9.1.5, and 9.0.10 that allows reading sensitive files.

★ 3 · 2024-07-10
0xFZin/CVE-2024-36991

Exploit for CVE-2024-36991 , written by me, enumerates a handfull of things, not all, cause not needed.

★ 3 · 2026-06-21
th3gokul/CVE-2024-36991

CVE-2024-36991: Path traversal that affects Splunk Enterprise on Windows versions below 9.2.2, 9.1.5, and 9.0.10.

★ 2 · 2024-07-06
TheStingR/CVE-2024-36991-Tool

This binary POC automates the exploitation of CVE-2024-36991 by sending crafted curl requests to a vulnerable Splunk instance. It retrieves sensitive files and…

★ 2 · 2025-10-30
CVE-2004-1561
MULTI PoC
PoCs 6 ★ 7 Last push 2026-06-21 (3 months, 2 weeks ago)

Fetching description from NVD…

Show 6 repositories
ivanitlearning/CVE-2004-1561

Icecast Header Overwrite buffer overflow RCE < 2.0.1 (Win32)

★ 7 · 2020-03-27
thel1nus/CVE-2004-1561-Notes

My notes for CVE-2004-1561 IceCast exploitation

★ 3 · 2021-05-28
darrynb89/CVE-2004-1561

Python version of Metasploit exploit for CVE-2004-1561

★ 1 · 2020-06-26
ratiros01/CVE-2004-1561
★ 0 · 2025-12-12
MonseigneurPatas/thm-ice-icecast-rce-privesc

Full compromise of TryHackMe's Ice machine — Icecast 2.0.1 RCE (CVE-2004-1561) via buffer overflow, followed by Windows privilege escalation through UAC bypass…

★ 0 · 2026-06-21
CVE-2024-50379
MULTI PoC
PoCs 14 ★ 84 Last push 2026-06-20 (3 months, 2 weeks ago)

Fetching description from NVD…

Show 8 of 14 repositories
SleepingBag945/CVE-2024-50379

tomcat CVE-2024-50379/CVE-2024-56337 条件竞争文件上传exp

★ 84 · 2024-12-23
ph0ebus/Tomcat-CVE-2024-50379-Poc

RCE through a race condition in Apache Tomcat

★ 57 · 2024-12-21
iSee857/CVE-2024-50379-PoC

Apache Tomcat(CVE-2024-50379)条件竞争致远程代码执行漏洞批量检测脚本

★ 24 · 2025-04-01
v3153/CVE-2024-50379-POC
★ 4 · 2024-12-26
dragonked2/CVE-2024-50379-POC

This repository contains a Python script designed to exploit CVE-2024-50379, a vulnerability that allows attackers to upload a JSP shell to a vulnerable server…

★ 4 · 2024-12-25
JFOZ1010/Nuclei-Template-CVE-2024-50379

Repositorio para alojar un template de Nuclei para probar el CVE-2024-50379 (en fase de prueba)

★ 2 · 2024-12-20
pwnosec/CVE-2024-50379

ExploitDB CVE-2024-50379 a vulnerability that enables attackers to upload a JSP shell to a vulnerable server and execute commands remotely. The exploit is espe…

★ 2 · 2025-01-23
yiliufeng168/CVE-2024-50379-POC
★ 1 · 2024-12-18
CVE-2021-3560
HOTMULTI PoC
PoCs 33 ★ 126 Last push 2026-06-19 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 33 repositories
Almorabea/Polkit-exploit

Privilege escalation with polkit - CVE-2021-3560

★ 125 · 2021-06-20
RicterZ/CVE-2021-3560-Authentication-Agent

PolicyKit CVE-2021-3560 Exploit (Authentication Agent)

★ 116 · 2022-05-02
swapravo/polkadots

CVE-2021-3560 Local PrivEsc Exploit

★ 82 · 2021-06-12
hakivvi/CVE-2021-3560

a reliable C based exploit and writeup for CVE-2021-3560.

★ 40 · 2021-06-23
winmin/CVE-2021-3560

PolicyKit CVE-2021-3560 Exploitation (Authentication Agent)

★ 25 · 2023-03-06
AssassinUKG/Polkit-CVE-2021-3560
★ 24 · 2021-06-29
UNICORDev/exploit-CVE-2021-3560

Exploit for CVE-2021-3560 (Polkit) - Local Privilege Escalation

★ 12 · 2022-06-26
CVE-2025-2304
MULTI PoC
PoCs 18 ★ 18 Last push 2026-06-19 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 18 repositories
Alien0ne/CVE-2025-2304

Authenticated privilege escalation in Camaleon CMS v2.9.0 via improper parameter handling in the updated_ajax endpoint.

★ 18 · 2026-02-04
predyy/CVE-2025-2304

Python script to exploit Privilege Escalation in Camaleon CMS.

★ 15 · 2026-02-01
whiteov3rflow/CVE-2025-2304-POC

CVE-2025-2304 POC

★ 10 · 2026-01-31
d3vn0mi/CVE-2025-2304-POC

Proof-of-concept for CVE-2025-2304 — critical (CVSS 9.4) mass-assignment privilege escalation in Camaleon CMS.

★ 10 · 2026-05-01
CsuriBird/CVE-2025-2304

This Python script exploits a critical mass assignment vulnerability in Camaleon CMS version 2.9.0, allowing any registered user to escalate their privileges t…

★ 5 · 2026-02-19
estebanzarate/CVE-2025-2304-Camaleon-CMS-Mass-Assignment-Privilege-Escalation-PoC

Privilege escalation vulnerability in Camaleon CMS < 2.9.1.

★ 2 · 2026-02-20
AzureADTrent/CVE-2025-2304_POC

CVE-2025-2304 POC - Camaleon CMS Privilege Escalation

★ 1 · 2026-02-01
CVE-2025-54123
MULTI PoC
PoCs 6 ★ 7 Last push 2026-06-18 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 6 repositories
kasem545/CVE-2025-54123-Poc

CVE-2025-54123 Hoverfly Authenticated Middleware Command Injection RCE

★ 7 · 2026-03-28
0xk4rth1/CVE-2025-54123

CVE-2025-54123 Hoverfly Command Injection to RCE PoC

★ 2 · 2026-06-18
tristanqtn/CVE-2025-54123

CVE-2025-54123 exploit and documentation

★ 0 · 2026-03-29
f4dee-backup/CVE-2025-54123

PoC CVE-2025-54123 - Hoverfly <= 1.11.3 - Authenticated Middleware Command Injection

★ 0 · 2026-03-31
davidzzo23/CVE-2025-54123

Hoverfly CVE RCE

★ 0 · 2026-03-31
CVE-2024-42009
MULTI PoC
PoCs 6 ★ 8 Last push 2026-06-17 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 6 repositories
DaniTheHack3r/CVE-2024-42009-PoC

CVE-2024-42009 Proof of Concept

★ 8 · 2025-05-30
0xbassiouny1337/CVE-2024-42009

This script exploits a stored XSS vulnerability (CVE-2024-42009) in Roundcube Webmail version 1.6.7. It injects a malicious payload into the webmail system, wh…

★ 4 · 2025-02-12
Bhanunamikaze/CVE-2024-42009

This Proof of Concept (PoC) demonstrates an exploit for CVE-2024-42009, leveraging a cross-site scripting (XSS) vulnerability to extract emails from a target w…

★ 1 · 2025-03-03
ZaidArif47/CVE-2024-42009
★ 1 · 2026-04-17
Shubhankargupta691/CVE-2024-42009
★ 0 · 2025-09-17
CVE-2024-38819
MULTI PoC
PoCs 5 ★ 39 Last push 2026-06-17 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 5 repositories
masa42/CVE-2024-38819-POC
★ 39 · 2024-12-14
GhostS3c/CVE-2024-38819

CVE-2024-38819 nuclei template

★ 3 · 2024-12-16
vishalnoza/CVE-2024-38819-POC2
★ 1 · 2025-06-25
skrkcb2/cve-2024-38819
★ 0 · 2025-03-11
trevorputbrese/cve-2024-38819-lab
★ 0 · 2026-06-17
CVE-2017-7269
HOTMULTI PoC
PoCs 19 ★ 135 Last push 2026-06-16 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 19 repositories
zcgonvh/cve-2017-7269

fixed msf module for cve-2017-7269

★ 135 · 2017-03-30
g0rx/iis6-exploit-2017-CVE-2017-7269

iis6 exploit 2017 CVE-2017-7269

★ 92 · 2023-02-04
lcatro/CVE-2017-7269-Echo-PoC

CVE-2017-7269 回显PoC ,用于远程漏洞检测..

★ 89 · 2018-10-27
zcgonvh/cve-2017-7269-tool

CVE-2017-7269 to webshell or shellcode loader

★ 88 · 2017-05-16
eliuha/webdav_exploit

An exploit for Microsoft IIS 6.0 CVE-2017-7269

★ 22 · 2017-03-29
Al1ex/CVE-2017-7269
★ 11 · 2018-04-28
slimpagey/IIS_6.0_WebDAV_Ruby

Ruby Exploit for IIS 6.0 Buffer Overflow (CVE-2017-7269)

★ 5 · 2017-04-06
h3x0v3rl0rd/CVE-2017-7269
★ 5 · 2021-07-16
CVE-2024-30088
HOTMULTI PoC
PoCs 10 ★ 527 Last push 2026-06-16 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 10 repositories
exploits-forsale/collateral-damage

Kernel exploit for Xbox SystemOS using CVE-2024-30088

★ 527 · 2025-07-13
tykawaii98/CVE-2024-30088
★ 290 · 2024-07-31
Zombie-Kaiser/CVE-2024-30088-Windows-poc

该漏洞存在于 NtQueryInformationToken 函数中,特别是在处理AuthzBasepCopyoutInternalSecurityAttributes 函数时,该漏洞源于内核在操作对象时对锁定机制的不当管理,这一失误可能导致恶意实体意外提升权限。

★ 45 · 2024-07-05
NextGenPentesters/CVE-2024-30088-

🆘New Windows Kernel Priviledge Escalation Vulnerability

★ 8 · 2024-06-27
Admin9961/CVE-2024-30088

Questa repository contiene una replica (tentativo di replica) scritto in Python per CVE-2024-30088.

★ 2 · 2024-07-27
Justintroup85/exploits-forsale-collateral-damage

Kernel exploit for Xbox SystemOS using CVE-2024-30088

★ 1 · 2024-08-25
repo4Chu/CVE-2024-30088__Windows-TOCTOU-exploit

This is a modified version of the original CVE-2024-30088 exploit, adapted to work in non-interactive environments (WinRM).

★ 1 · 2026-04-29
cyghtinc/cve-2024-30088-binary-LPE-PRIVIELEGE-ESCALATION-CYGHT-TOCTOU

compiled poc binary local privilege escalation by oilrig

★ 0 · 2025-10-06
CVE-2023-21036
MULTI PoC
PoCs 6 ★ 80 Last push 2026-06-15 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 6 repositories
infobyte/CVE-2023-21036

Detection and sanitization for Acropalypse Now - CVE-2023-21036

★ 80 · 2023-05-15
qixils/AntiCropalypse

Discord bot for mitigating the aCropalypse vulnerability (CVE-2023-21036, CVE-2023-28303) by retroactively deleting vulnerable images

★ 22 · 2023-04-01
lordofpipes/acropadetect

Web tool for detecting Acropalypse (CVE-2023-21036) https://lordofpipes.github.io/acropadetect/

★ 3 · 2023-04-01
notaSWE/gocropalypse

CVE-2023-21036 detection in Go

★ 1 · 2023-03-27
iqbaalilmii/acropalypse-reconstructor

A lightweight CLI tool to detect and reconstruct cropped images vulnerable to Acropalypse (CVE-2023-21036 and CVE-2023-28303) written in Python.

★ 1 · 2026-06-15
PolitoInc/XWFAcropalypse

X-Ways Acropalypse extension detects CVE-2023-21036 in common images

★ 0 · 2026-04-20
CVE-2026-0257
MULTI PoC
PoCs 7 ★ 30 Last push 2026-06-15 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 7 repositories
sfewer-r7/CVE-2026-0257

Proof-of-concept script to leverage the PAN-OS GlobalProtect authentication bypass CVE-2026-0257

★ 30 · 2026-05-29
0xBlackash/CVE-2026-0257

CVE-2026-0257

★ 3 · 2026-06-05
tushargurav28/CVE-2026-0257

Palo Alto Networks PAN-OS contains an authentication bypass caused by flaws in the GlobalProtect portal and gateway, letting attackers establish unauthorized V…

★ 3 · 2026-06-03
akashsingh0454/CVE-2026-0257-PoC
★ 2 · 2026-05-29
grayxploit/CVE-2026-0257

GrayXploit Security research and defensive team validate this toolkit for CVE-2026-0257 (PAN-OS GlobalProtect Authentication Bypass). Includes vulnerability as…

★ 1 · 2026-06-10
HORKimhab/CVE-2026-0257

CVE-2026-0257 - PAN-OS

★ 0 · 2026-05-31
Ez4rd1x1/CVE-2026-0257

testing

★ 0 · 2026-06-15
CVE-2024-10914
MULTI PoC
PoCs 13 ★ 48 Last push 2026-06-14 (3 months, 3 weeks ago)

Fetching description from NVD…

Show 8 of 13 repositories
verylazytech/CVE-2024-10914

POC - CVE-2024–10914- Command Injection Vulnerability in `name` parameter for D-Link NAS

★ 48 · 2024-11-27
imnotcha0s/CVE-2024-10914

Exploit for cve-2024-10914: D-Link DNS-320, DNS-320LW, DNS-325, DNS-340L Version 1.00, Version 1.01.0914.2012, Version 1.01, Version 1.02, Version 1.08 Command…

★ 15 · 2024-11-09
ThemeHackers/CVE-2024-10914

CVE-2024-10914 is a critical command injection vulnerability affecting several legacy D-Link Network Attached Storage (NAS) devices.

★ 9 · 2025-06-09
redspy-sec/D-Link

CVE-2024-10914 D-Link Remote Code Execution (RCE)

★ 4 · 2024-12-07
Bu0uCat/D-Link-NAS-CVE-2024-10914-

这是一个D-Link rce漏洞 检测程序

★ 1 · 2024-11-15
yenyangmjaze/cve-2024-10914
★ 1 · 2025-02-14
TH-SecForge/CVE-2024-10914

CVE-2024-10914 is a critical command injection vulnerability affecting several legacy D-Link Network Attached Storage (NAS) devices.

★ 1 · 2025-06-09
Egi08/CVE-2024-10914

CVE-2024-10914_Manual testing with burpsuite

★ 0 · 2024-11-13
< Prev Page 18 / 33 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.