n1sh1th / CVE-POC
This is collection of latest CVE POCs.
☆30Updated 2 years ago
Alternatives and similar repositories for CVE-POC:
Users that are interested in CVE-POC are comparing it to the libraries listed below
- Spring4Shell Burp Scanner☆70Updated 2 years ago
- Improve automated and semi-automated active scanning in Burp Pro☆60Updated 2 years ago
- OpenSSH Pre-Auth Double Free CVE-2023-25136 POC☆45Updated last year
- CVE-2023-21554 Windows MessageQueuing PoC,分析见 https://www.zoemurmure.top/posts/cve_2023_21554/☆56Updated last year
- WEB API fuzzing☆24Updated last year
- A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.☆110Updated 2 years ago
- PoC for the recent critical vuln affecting OpenSSH versions < 9.3p2☆36Updated 2 months ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆55Updated last year
- nuclei scanner for proxyshell ( CVE-2021-34473 )☆42Updated 2 years ago
- ☆33Updated last year
- Burp Suite's extension to scan and crawl Single Page Applications☆100Updated last year
- Returns results from Google search.☆47Updated 2 years ago
- CVE-2022-41040 - Server Side Request Forgery (SSRF) in Microsoft Exchange Server☆88Updated last year
- ☆52Updated 2 years ago
- SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities.☆160Updated last year
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆27Updated 4 months ago
- VMWare Aria Operations for Networks (vRealize Network Insight) Static SSH key RCE (CVE-2023-34039)☆97Updated last year
- Repository of AI-generated Nuclei templates for public CVEs not yet covered by existing templates, enhancing detection speed and coverage…☆61Updated last month
- URL scanner for recon, vulnerabilities, secrets and more!☆12Updated 3 years ago
- Perform with Massive Command Injection (Chamilo)☆21Updated last year
- CVE-2022-46169 Cacti remote_agent.php Unauthenticated Command Injection.☆49Updated 2 years ago
- Exploit for PrestaShop bockwishlist module 2.1.0 SQLi (CVE-2022-31101)☆25Updated 2 years ago
- 🚀 Sling Shot R3con: Automate Your Bug Bounty and Pentest Reconnaissance with Project Discovery tools 🎯☆24Updated last year
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆25Updated 2 years ago
- Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)☆87Updated 2 years ago
- ☆34Updated 2 years ago
- CVE-2022-41852 Proof of Concept (unofficial)☆75Updated 2 years ago
- A list of threat sinks used in the manual security source code review for application security☆70Updated last year