xiaoxiaoleo / pentest-scriptLinks
Script for pentest
☆39Updated 4 years ago
Alternatives and similar repositories for pentest-script
Users that are interested in pentest-script are comparing it to the libraries listed below
Sorting:
- cve-2019-0604 SharePoint RCE exploit☆100Updated 5 years ago
- It is a simple script to exploit RCE for Samba (CVE-2017-7494 ).☆55Updated 3 years ago
- Exploit for the Post-Auth RCE vulnerability in Pulse Secure Connect☆132Updated 3 years ago
- CVE-2020-0688_EXP Auto trigger payload & encrypt method☆146Updated 5 years ago
- Oracle WebLogic WLS-WSAT Remote Code Execution Exploit (CVE-2017-10271)☆127Updated 2 years ago
- WebLogic Exploit☆142Updated 7 years ago
- Roundcube 1.0.0 <= 1.2.2 Remote Code Execution exploit and vulnerable container☆47Updated last year
- rce exploit , made to work with pocsuite3☆119Updated 5 years ago
- Eternalblue-Doublepulsar without Metasploit or python☆53Updated 6 years ago
- Custom THP Dropper☆26Updated 7 years ago
- CVE-2019-15107 Webmin RCE (unauthorized)☆64Updated 5 years ago
- CVE-2019-0604☆134Updated 6 years ago
- Burp Suite Attack Selector Plugin☆60Updated 7 years ago
- GodOfWar - Malicious Java WAR builder with built-in payloads☆123Updated 6 years ago
- Proof of concept written in Python to show that in some situations a SSRF vulnerability can be used to steal NTLMv1/v2 hashes.☆57Updated 7 years ago
- Learn how to get a reverse shell from JIRA application server☆24Updated 6 years ago
- WebLogic Insecure Deserialization - CVE-2019-2725 payload builder & exploit☆49Updated 5 years ago
- Environment for CVE-2019-6340 (Drupal)☆43Updated 2 years ago
- CVE-2020-8012, CVE-2016-10709, CVE-2017-17099, CVE-2017-18047, CVE-2019-1003000, CVE-2018-1999002☆67Updated 5 months ago
- A DNS tunnel utilizing the Burp Collaborator☆102Updated 5 years ago
- ☆63Updated 5 years ago
- siberas JMX exploitation toolkit☆130Updated 2 years ago
- CentOS Control Web Panel, Root Privilege Escalation☆67Updated 5 years ago
- CVE-2018-7600 Drupal RCE☆116Updated 7 years ago
- checkO365 is a tool to check if a target domain is using O365☆84Updated 7 years ago
- CVE-2019-6340-Drupal SA-CORE-2019-003☆32Updated 6 years ago
- Java serialization brute force attack tool.☆123Updated 7 years ago
- Some exploits, which I’ve created during my OSCE preparation.☆83Updated 7 years ago
- Exploit code developed/reproduced by me☆89Updated 2 years ago
- A PoC Java Stager which can download, compile, and execute a Java file in memory.☆107Updated 6 years ago