Authenticated privilege escalation in Camaleon CMS v2.9.0 via improper parameter handling in the updated_ajax endpoint.
☆19Feb 4, 2026Updated 6 months ago
Alternatives and similar repositories for CVE-2025-2304
Users that are interested in CVE-2025-2304 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- This Python PoC exploits CVE-2024-46987, a Path Traversal bug in Camaleon CMS 2.8.0 < 2.8.2 (work on 2.9.0). It allows authenticated use…☆28May 10, 2026Updated 3 months ago
- Repository of various scripts related to Mobile PT. Copyrights and Licensing terms belong to respective owners.☆11Nov 4, 2019Updated 6 years ago
- CVE-2023-40028 affects Ghost, an open source content management system, where versions prior to 5.59.1 allow authenticated users to uploa…☆13Jan 7, 2025Updated last year
- CVE-2023-46818 Python3 Exploit for ISPConfig <= 3.2.11 (language_edit.php) PHP Code Injection Vulnerability☆15Apr 16, 2025Updated last year
- PoC for CVE-2025-32463 - Sudo chroot Elevation of Privilege Vulnerability☆25Jul 5, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- CVE-2025-4138 / CVE-2025-4517 — Python tarfile PATH_MAX Symlink Filter Bypass☆17Jun 4, 2026Updated 2 months ago
- Find secrets and passwords in container images and file systems☆15Nov 16, 2022Updated 3 years ago
- File upload logic flaw in Apache Struts2 exploit☆17Jan 3, 2025Updated last year
- ☆22Mar 6, 2026Updated 5 months ago
- HTTP Headers Security Cheat Sheet☆12Sep 25, 2021Updated 4 years ago
- ☆21Mar 15, 2024Updated 2 years ago
- A searchable, copy-pasteable library of pentesting commands focused on Active Directory. Runs entirely in your browser.☆27Apr 21, 2026Updated 4 months ago
- This repository contains a proof-of-concept exploit script for CVE-2025-32432, a pre-authentication Remote Code Execution (RCE) vulnerabi…☆27Apr 27, 2025Updated last year
- My Reverse Shell Cheat Sheet☆14Mar 2, 2022Updated 4 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Unveiling Cyber Threats: From assets to Vulnerability Insights☆18Aug 11, 2026Updated 2 weeks ago
- Cfd (Cloudflare detector) is a tool that allows you to check one or more domains to see if they are protected by CloudFlare or not. The c…☆17Mar 30, 2023Updated 3 years ago
- Script for generating write-ups templates for CTF challenges 🗃️☆15Feb 5, 2022Updated 4 years ago
- Proof of Concept demonstrating Remote Code Execution through insecure deserialization in Roundcube (CVE-2025-49113).☆93Jun 6, 2025Updated last year
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆12Aug 30, 2022Updated 4 years ago
- Proof of Concept for CVE-2025-31161 / CVE-2025-2825☆48Apr 8, 2025Updated last year
- The Microsoft Student Security Operations Center (SOC) Toolkit is designed to equip facilitators with everything needed to prepare high s…☆25Jul 1, 2025Updated last year
- Groovy Post Exploitation☆19Oct 21, 2024Updated last year
- This project is aimed at freely providing technical guides on various hacking topics: Active Directory services, web services, servers, i…☆16Oct 22, 2020Updated 5 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- 🔍 erroreyes – Lightweight Subdomain Enumeration Tool A Python-based tool that queries crt.sh certificate logs to discover subdomains ass…☆17May 8, 2025Updated last year
- Additional graphics settings for Lethal Company, such as resolution, anti-aliasing. fog quality etc.☆28Dec 23, 2023Updated 2 years ago
- Just a vault template to help someone on the certificate.☆21Sep 3, 2025Updated 11 months ago
- Generate reverse shells in command line with Go !☆20Aug 9, 2020Updated 6 years ago
- Markdown version of OWASP Testing Checklist v4☆14Aug 15, 2017Updated 9 years ago
- My backdoor script for a vulnerable version of UnrealIRCd☆26Apr 29, 2024Updated 2 years ago
- A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.☆33Feb 24, 2023Updated 3 years ago
- Transforming Smooth AD Automation Scripts into Attack Vectors☆20Nov 22, 2025Updated 9 months ago
- Testing POC for use cases☆26Nov 24, 2024Updated last year
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- A Python script that parses your SUID/SGID enumeration output and checks which binaries are exploitable according to GTFOBins. Supports b…☆35Dec 24, 2025Updated 8 months ago
- Notepad++ Linux Fork☆21Feb 15, 2026Updated 6 months ago
- Scripts from Ghidra Golf competitions☆34Jan 24, 2023Updated 3 years ago
- ☆23Aug 30, 2021Updated 5 years ago
- ☆35Aug 21, 2024Updated 2 years ago
- Spin off from https://github.com/prometheux-ar/cyberpunk for the Windows Terminal application.☆24Aug 1, 2021Updated 5 years ago
- Working exploit (PoC) for CVE-2025-59287 — WSUS vulnerability. Featured on Vulners and DeepWiki.☆16Oct 25, 2025Updated 10 months ago