Fetching description from NVD…
Show 1 repositories
Скрипт проверки роутеров Netis
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live11117 results
Fetching description from NVD…
Скрипт проверки роутеров Netis
This vulnerability exists in the Netlink ICT HG323RW router due to insufficient authorization and input validation controls in the diagnostic script import functionality. An authenticated attacker could exploit this vulnerability by uploading and executing a specially crafted script through the web management interface. Successful exploitation of this vulnerability could allow the attacker to execute arbitrary operating system commands with root privileges resulting in complete compromise of the affected device.
Fetching description from NVD…
Fetching description from NVD…
Safely detect SolarWinds ARM RCE CVE-2026-28326
Fetching description from NVD…
CVE-2025-24071: NTLM Hash Leak via RAR/ZIP Extraction and .library-ms File
Windows File Explorer Spoofing Vulnerability (CVE-2025-24071)
Metasploit module for CVE-2025-24071 - Windows NTLM Hash Leak via .library-ms
A PoC of CVE-2025-24071 / CVE-2025-24054, A windows vulnerability that allow get NTMLv2 hashes
Exploited CVE-2025-24071 via SMB by hosting a .library-ms file inside a .tar archive. Using tar x from smbclient, the payload is extracted server-side without …
CVE-2025-24071 Proof Of Concept
Security Vulnerability Report: CVE-2025-24071 - Windows File Explorer Spoofing Vulnerability
Alternativa CVE-2025-24071_PoC
Fetching description from NVD…
Zabbix CVE-2024-42327 PoC
cve-2024-42327 ZBX-25623
PoC for CVE-2024-42327 / ZBX-25623
Proof of concept for CVE-2024-42327: Zabbix privilege escalation to RCE
POC for CVE-2024-42327, an authenticated SQL Injection in Zabbix through the user.get API Method
This is for educational porpuses only. Please do not use agains unathorized systems.
Caderno Temático NotebookLM: análise de vulnerabilidades SQL Injection (CVE-2024-42327, CVE-2026-23921) no Zabbix, com engenharia de prompts, cadeia de ataque …
Fetching description from NVD…
CVE-2023-40028 affects Ghost, an open source content management system, where versions prior to 5.59.1 allow authenticated users to upload files that are symli…
Arbitrary file read in Ghost-CMS allows an attacker to upload a malicious ZIP file with a symlink.
CVE-2023-40028 PoC Exploit
Proof of concept for CVE-2023-40028: Ghost arbitrary file read
Exploit for CVE-2023-40028 (for educational purposes)
Fetching description from NVD…
POC exploit for CVE-2021-44967
Proof of concept for CVE-2021-44967: LimeSurvey authenticated RCE
Authenticated (privileged) remote command execution in LimeSurvey Version 5.2.4 via upload and install plugins allows a remote user to upload arbitrary PHP cod…
🔥 Automated RCE Exploit for Limesurvey (CVE-2021-44967). Cadena de explotación optimizada para escalada de privilegios. 🚀
Fetching description from NVD…
Technical disclosure and PoC for CVE-2026-84543, a macOS SMB kernel vulnerability
Fetching description from NVD…
POC - Unauthenticated RCE Flaw in Rejetto HTTP File Server - CVE-2024-23692
Unauthenticated RCE Flaw in Rejetto HTTP File Server (CVE-2024-23692)
CVE-2024-23692 Exploit
CVE-2024-23692
Rejetto HTTP File Server (HFS) 2.x - Unauthenticated RCE exploit module (CVE-2024-23692)
HFS2.3未经身份验证的远程代码执行(CVE-2024-23692)
Fetching description from NVD…
PoC for Zip Slip in MarkUs Assignment Configuration Uploads
Fetching description from NVD…
DJI Drone Cleartext Bluetooth Transmission of Wi-Fi PSK and Session UUID — Proof of Concept for CVE-2026-77812.
Fetching description from NVD…
OliveTin is a self-hosted web UI for exposing predefined shell commands to end users. This repository contains a proof-of-concept demonstrating two independent…
Comprehensive penetration testing write-up and exploit details for Hack The Box - Enigma machine, covering local enumeration, OliveTin CVE-2026-27626 command i…
The JSM Show Post Metadata WordPress plugin before 4.9.1 does not properly escape a post meta key before outputting it into an inline event-handler attribute in an admin-facing meta box, allowing users with contributor-level access and above to inject arbitrary JavaScript that executes in the session of a higher-privileged user who reviews the affected post.
JSM Show Post Metadata < 4.9.1 - Contributor+ Stored XSS via Custom Field Meta Key
Frictionless before 5.19.1 contains an OS command injection vulnerability in the explore console command that allows an attacker who supplies a crafted Data Package descriptor to execute arbitrary operating system commands as the user who explores it. Attackers can place shell metacharacters in resource path values within a datapackage.json descriptor, which are passed unsanitized to os.system through a shell, causing arbitrary command execution in the victim's security context when they run the explore command against the untrusted package. This vulnerability was also addressed in version 5.20.0rc2 of the pre-release branch.
Frictionless <= 5.20.0rc1 OS command injection via CLI explore.
Fetching description from NVD…
CVE-2020-15368, aka "How to exploit a vulnerable driver"
arbitrary code execution with CVE-2020-15368
Reverse engineering research of ASRock AsrDrv103.sys (CVE-2020-15368), covering its driver interface, encrypted request protocol, and privileged hardware acces…
The WP Recipe Maker plugin for WordPress is vulnerable to Arbitrary Shortcode Execution in all versions up to, and including, 10.8.1. The vulnerability exists because `WPRM_Metadata::sanitize_metadata()` recursively calls `do_shortcode()` on every scalar field of the recipe's structured metadata array — including the `reviewBody` field, which is populated verbatim from the `comment_content` of approved `wprm-comment-rating` comments — without sanitizing or stripping shortcode tokens before execution; the subsequent `wp_strip_all_tags()` and `strip_shortcodes()` calls operate only on the output string after execution has already fully occurred, providing no protection against server-side shortcode invocation. This makes it possible for unauthenticated attackers to execute arbitrary registered WordPress shortcodes server-side on every recipe page render, causing shortcode output — such as attachment captions, private post fields, or other data exposed by installed shortcodes — to be embedded in the page's JSON-LD `reviewBody` metadata and disclosed to all visitors who load the recipe page. Successful exploitation requires the attacker's rated comment to pass the site's comment approval threshold, either via auto-approval or moderator action, before the injected shortcode begins executing on page loads.
PoC for CVE-2026-89274: unauthenticated arbitrary shortcode execution in WP Recipe Maker ≤10.8.1 via recipe rating comments (JSON-LD). Python check/exploit/ver…
Unauthenticated Arbitrary Shortcode Execution
CVE-2026-89274 — WP Recipe Maker <= 10.8.1 arbitrary shortcode execution via rating-comment reviewBody (CVSS 9.1): Docker validation lab with vulnerable (10.8.…
Fetching description from NVD…
Unauthenticated Authentication Bypass
Fetching description from NVD…
Take first steps in CodeQL for Python by writing a query to find CVE-2024-32022
Fetching description from NVD…
CVE-2026-86218 - Draft or TODO - N-central is vulnerable to a pre-auth remote code execution
CVE-2026-86218 - N-able N-central Struts BeanUtils Unauthenticated RCE
CVE-2026-86218
Fetching description from NVD…
CVE-2021-40444 PoC
CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit
This repo contain builders of cab file, html file, and docx file for CVE-2021-40444 exploit
Modified code so that we don´t need to rely on CAB archives
Microsoft MSHTML Remote Code Execution Vulnerability CVE-2021-40444
Fetching description from NVD…
PoC CVE-2020-6857
Fetching description from NVD…
A Proof-of-Concept for CVE-2025-64512 using a polyglot file.
CVE-2025-64512: pdfminer.six pickle deserialization rce; .pickle.gz + pdf generator w/ custom payloads
CLI wrapper around the official PoC for CVE-2025-64512 — pdfminer.six insecure pickle deserialization via crafted PDF (RCE)
PoC script for CVE-2025-64512
CVE-2025-64512 - pdfminer.six Remote Code Execution Exploit
Exploit for CVE-2025-64512 to get a reverse shell.
Fetching description from NVD…
Public write-up and disclosure timeline for CVE-2026-1769 (Stored XSS in Xerox CentreWare Web)
Fetching description from NVD…
PoC for CVE-2025-22457 - A remote unauthenticated stack based buffer overflow affecting Ivanti Connect Secure, Pulse Connect Secure, Ivanti Policy Secure, and …
CVE-2025-22457: Python Exploit POC Scanner to Detect Ivanti Connect Secure RCE
Prevent CVE-2025-22457 and other security problems with Juniper/Ivanti Secure Connect SSL VPN
PoC CVE-2025-22457
Altay takımı haftalık sunumu için yaptığım cve-2025-22457 zafiyeti demo uygulaması
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.