xapax / xss-to-rceLinks
Javascript payload that inject a malicious payload into the copy-buffer of the victim
☆36Updated 7 years ago
Alternatives and similar repositories for xss-to-rce
Users that are interested in xss-to-rce are comparing it to the libraries listed below
Sorting:
- The (WordPress) website test script can be exploited for Unlimited File Upload via CVE-2020-35489☆30Updated last year
- HTTP verb tampering & methods enumeration☆62Updated 3 months ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆81Updated 2 years ago
- Wordlist to bruteforce for LFI☆128Updated 6 years ago
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆69Updated 5 years ago
- ☆42Updated last year
- Cheat sheet☆36Updated 5 years ago
- ☆49Updated 5 years ago
- Web CTF CheatSheet 🐈☆34Updated 6 years ago
- Exploit and Check Script for CVE 2022-1388☆58Updated 7 months ago
- A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration☆78Updated 5 years ago
- Exploit tool for CVE-2021-43008 Adminer 1.0 up to 4.6.2 Arbitrary File Read vulnerability☆87Updated last year
- OSWE Preparation☆37Updated 6 years ago
- ☆74Updated last year
- LFI to RCE via phpinfo() assistance or via controlled log file☆72Updated 2 years ago
- Collection Of Reverse Shell that can easily generate using Python3☆60Updated last year
- 📚 An ultimate collection wordlists of the best-known CMS☆92Updated last year
- A "Spring4Shell" vulnerability scanner.☆49Updated 10 months ago
- Prototype Pollution Scanner☆128Updated 4 years ago
- Script for Bug Bounty☆29Updated 4 years ago
- https://medium.com/@mansoorr/exploiting-cve-2020-25213-wp-file-manager-wordpress-plugin-6-9-3f79241f0cd8☆58Updated 5 years ago
- ☆55Updated 4 years ago
- ElasticSearch exploit and Pentesting guide for penetration tester☆29Updated 3 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆56Updated 3 years ago
- All known and unknown public POC's for wordpress themes and plugins☆78Updated 4 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆61Updated 2 years ago
- Workshop given at Hack in Paris 2019☆125Updated 2 years ago
- Scanner for Cross-Site WebSocket Hijacking☆42Updated 5 years ago
- Notes for CRTP☆42Updated 4 years ago
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆33Updated 3 years ago