Skip to content

Latest commit

 

History

History
20 lines (11 loc) · 828 Bytes

README.md

File metadata and controls

20 lines (11 loc) · 828 Bytes

exploits

exploits, tools and miscellaneous

CVE-2015-6854

Exploit a remote unauthenticated memory disclosure in Siteminder SSO / CA SSO

Incorrect decoding of URL results in improperly terminated and reflected string value.

CVE-2018-1212

Exploits two weak cryptographic session token mechanisms in iDRAC 6 web interfaces to obtain authentication credentials and then deploys a CVE-2018-1212 payload to obtain root code execution.

CVE-2019-9053-2

CVE-2019-9053 was a SQL injection in CMSMadeSimple. This exploit performs a new SQL injection attack in the new code by providing data as an unanticipated type.

spraynpray

Brute force tool to be used with a pre-exsisting PHP file incusion exploit, where no suitable exploitable code exists natively on the target. Designed to attack musllibc php (I.E. alpine).