This repo is a PoC with to exploit CVE-2023-51467 and CVE-2023-49070 preauth RCE vulnerabilities found in Apache OFBiz.
☆74Mar 24, 2024Updated 2 years ago
Alternatives and similar repositories for Apache-OFBiz-Authentication-Bypass
Users that are interested in Apache-OFBiz-Authentication-Bypass are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆13May 18, 2022Updated 4 years ago
- CVE-2023-0297: The Story of Finding Pre-auth RCE in pyLoad☆28Jan 14, 2023Updated 3 years ago
- Nibbleblog 4.0.3 - Arbitrary File Upload (CVE-2015-6967)☆15Feb 25, 2021Updated 5 years ago
- GameOver(lay) Ubuntu Privilege Escalation☆136Oct 9, 2023Updated 2 years ago
- MS Office and Windows HTML RCE (CVE-2023-36884) - PoC and exploit☆41Nov 2, 2023Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Jellyfin prometheus exporter☆14Feb 9, 2026Updated 6 months ago
- A PoC exploit for CVE-2023-51467 - Apache OFBiz Authentication Bypass☆12Dec 31, 2023Updated 2 years ago
- CORS Exploit POC for WordPress REST API☆11Oct 27, 2024Updated last year
- burp suite插件☆14Jul 9, 2023Updated 3 years ago
- Ghostscript command injection vulnerability PoC (CVE-2023-36664)☆131Sep 7, 2023Updated 2 years ago
- ☆41Nov 6, 2023Updated 2 years ago
- Making your own CTF☆26Jan 5, 2021Updated 5 years ago
- Installs and manages a curated set of penetration-testing tools via apt and git, with per-tool reporting.☆10Aug 1, 2026Updated 2 weeks ago
- CVE-2022-25765 pdfkit <0.8.6 command injection.☆16Dec 21, 2022Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Python exploit for vsftpd 2.3.4 - Backdoor Command Execution☆15Jan 8, 2023Updated 3 years ago
- Spring Cloud Function Vulnerable Application / CVE-2022-22963☆19Apr 1, 2022Updated 4 years ago
- Metabase Pre-auth RCE☆12Aug 3, 2023Updated 3 years ago
- Blank methodology sheet for the OSWE exam☆14Dec 17, 2021Updated 4 years ago
- A Python script for generating exploits targeting CVE-2022-4510 RCE Binwalk. It supports SSH, command execution, and reverse shell option…☆14Jun 27, 2023Updated 3 years ago
- CVE-2024-23692 Exploit☆13Jun 18, 2024Updated 2 years ago
- CVE-2023-2255 Libre Office☆65Jul 10, 2023Updated 3 years ago
- Repositório com materiais para competições de programação☆10Oct 3, 2019Updated 6 years ago
- A critical security vulnerability, identified as CVE-2023-50164 (CVE: 9.8) was found in Apache Struts, allowing attackers to manipulate f…☆86Nov 3, 2025Updated 9 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- retrieve comprehensive information about a website, including its title, last modified date, DNS information, subdomains, firewall names,…☆18Mar 24, 2024Updated 2 years ago
- A simple password cracker written in Go, designed to search for a specific hashed password in a wordlist.☆13Feb 23, 2024Updated 2 years ago
- Rehashing APIs to prevent hash based detection☆14Jan 7, 2025Updated last year
- 目前通过自学已经取得 OSCP(Offensive Security Certified Professional)证书,本项目用于记录、分享、交流。☆12Aug 16, 2022Updated 4 years ago
- The powerfull Extract and Scanner Javascript urls (Upgrade Deeper search)☆25Nov 7, 2024Updated last year
- Gitbook: OSCP-Jewels☆13Oct 19, 2021Updated 4 years ago
- 🌙 DNS query tool written in go☆15Dec 27, 2025Updated 7 months ago
- A wrapper around the Proxmark3 client that will alert the user of specific events☆31Dec 13, 2020Updated 5 years ago
- This is a exploit of CVE-2022-46169 to cacti 1.2.22. This exploit allows through an RCE to obtain a reverse shell on your computer.☆42Sep 11, 2023Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Mass Assigner is a simple tool made to probe for mass assignment vulnerability through JSON field modification in HTTP requests☆18Jun 22, 2024Updated 2 years ago
- SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions…☆69Oct 13, 2024Updated last year
- CVE-2022-22963 is a vulnerability in the Spring Cloud Function Framework for Java that allows remote code execution. This python script w…☆24Mar 18, 2023Updated 3 years ago
- Proof of concept : CVE-2024-1071: WordPress Vulnerability Exploited☆24Aug 30, 2024Updated last year
- 一站式自动下载部署常用安全工具小脚本.☆19Jun 6, 2023Updated 3 years ago
- A proof of concept of the path traversal vulnerability in the python AioHTTP library =< 3.9.1☆20Mar 19, 2024Updated 2 years ago
- This tool allows you to find ssti vulnerability with ease!☆22Sep 3, 2022Updated 3 years ago