Proof of concept exploit that demonstrates user data exposure via an insecure direct object reference and missing access control vulnerabilities in...
Soosyze CMS 2.0 suffers from a missing authentication rateβlimiting vulnerability CWEβ307 on the /user/login endpoint. The application allows unlim...
This proof of concept demonstrates a security issue in wlc versions earlier than 1.17.0, where SSL/TLS certificate validation can be bypassed. By a...
Proof of concept exploit for an older vulnerability from 2013 where Sophos Web Virtual Appliance version 3.7.0 suffered from a directory traversal ...
This program is a multi-threaded test application created to analyze the impact of excessive X.509 Name Constraints processing in vulnerable versio...
Proof of concept exploit for CVE-2022-43571, a critical authenticated remote code execution vulnerability affecting Splunk Enterprise versions 8.2....
This Metasploit auxiliary module scans a GLPI installation for improperly exposed documents linked to KnowbaseItem objects via the document.send.ph...
This proof of concept leverage Tomcat manager credentials to upload and execute a malicious WAR file containing a JSP web shell on Dell RecoverPoin...
This PHP code implements a fully automated remote exploitation framework targeting SmarterMail version 100.0.9413. It is designed to identify the s...
Proof of concept exploit for Selenium Server Grid versions 4.27.0 and below that exploits firefoxprofile to force the browser to run bash commands...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning β all in one platform.