bigb0x / CVE-2024-34102
POC for CVE-2024-34102. A pre-authentication XML entity injection issue in Magento / Adobe Commerce.
☆32Updated 9 months ago
Alternatives and similar repositories for CVE-2024-34102:
Users that are interested in CVE-2024-34102 are comparing it to the libraries listed below
- POC for CVE-2024-40348. Will attempt to read /etc/passwd from target☆30Updated 9 months ago
- ☆44Updated last month
- Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)☆75Updated 10 months ago
- Apache OFBiz RCE Scanner & Exploit (CVE-2024-38856)☆44Updated 6 months ago
- backdoor exploit for vsftpd 2.3.4 on python☆15Updated last year
- ☆13Updated last year
- CVE-2024-27198 & CVE-2024-27199 PoC - RCE, Admin Account Creation, Enum Users, Server Information☆27Updated 9 months ago
- CVE-2024-28955 Exploitation PoC☆34Updated 9 months ago
- Nuclei template and information about the POC for CVE-2024-25600☆28Updated last year
- A PoC exploit for CVE-2023-43208 - Mirth Connect Remote Code Execution (RCE)☆24Updated last year
- This repository presents a proof-of-concept of CVE-2024-23897☆16Updated last year
- A BurpSuite extension for vulnerability Scanning☆27Updated last year
- POC for CVE-2024-36401. This POC will attempt to establish a reverse shell from the vlun targets.☆33Updated 9 months ago
- CVE-2024-4879 - Jelly Template Injection Vulnerability in ServiceNow☆23Updated 9 months ago
- Proof of Concept Exploit for CVE-2024-9464☆45Updated 6 months ago
- CVE-2025-24016: RCE in Wazuh server! Remote Code Execution☆32Updated 2 months ago
- This tool automates the process of running FFUF (Fuzz Faster U Fool) and post-processing its results to extract valid URLs. It supports b…☆34Updated 5 months ago
- Template Nuclei SSTI☆29Updated last year
- Authentication Bypass in GoAnywhere MFT☆61Updated last year
- ☆27Updated 11 months ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated last year
- PoC for Exploiting CVE-2024-31848/49/50/51 - File Path Traversal☆16Updated 11 months ago
- SNMP Bash Script to discover valid community strings, dump basic information, check for write permission and check for RCE.☆11Updated last year
- CVE-2024-27956 WordPress Automatic < 3.92.1 - Unauthenticated SQL Injection☆18Updated last year
- Apache HugeGraph Server RCE Scanner ( CVE-2024-27348 )☆60Updated 10 months ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆49Updated last year
- All-in Fuzzer. Burp suite extension for auto fuzzing params, headers, body☆32Updated last month
- Url scrapper or extractor from alienvault☆33Updated last month
- PrestaXSRF is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's critical…☆31Updated last year
- Unauthenticated RCE on CraftCMS when PHP `register_argc_argv` config setting is enabled☆42Updated 4 months ago