Python script for CVE-2024-0012 / CVE-2024-9474 exploit
SOC287 - Arbitrary File Read on Checkpoint Security Gateway [CVE-2024-24919]
This script checks for devices vulnerable to the EternalBlue exploit (CVE-2017-0144) in a network using SMB.
A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attacker can write out of bounds in the sum2 buffer.
#PoC for CVE-2024-55591 Authentication bypass Affects: FortiOS 7.0.0 to 7.0.16 , FortiProxy 7.0.0 to 7.0.19 ,FortiProxy 7.2.0 to 7.2.12
A comprehensive all-in-one Python-based Proof of Concept script to discover and exploit a critical authentication bypass vulnerability (CVE-2024-55591) in certain Fortinet devices.
Ivanti Connect Secure, Policy Secure & ZTA Gateways - CVE-2025-0282
A rewrite of the Polkit vulnerability.
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS and FortiProxy may allow a remote attacker to gain super-admin privileges via crafted requests to Node.js websocket module.
This repository contains informaion about the Fortigate firewall vulnerability (CVE-2022-40684) and affected data that were publicly disclosed by the Belsen Group. This information is being shared for security research and defensive purposes to help organizations identify if they were impacted.
Private CVE-2024-55591
Exploit for CVE-2024-53704 - SonicWall SonicOS SSLVPN authentication bypass
Check Point Security Gateways RCE via CVE-2021-40438
Exploit for CVE-2025-0282: A remote unauthenticated stack based buffer overflow affecting Ivanti Connect Secure, Ivanti Policy Secure, and Ivanti Neurons for ZTA gateways
Check Point Security Gateways RCE via CVE-2021-40438
Compiled CVE-2021-1732(WIndows XP-10(till 20H1) LPE)
A Python script for examining Ivanti Secure Connect (ICS) event logs, designed to support investigations into vulnerabilities CVE-2025-0282, CVE-2023-46805, and CVE-2024-21887.
Research repository tracking affected IPs from the Fortigate CVE-2022-40684 configuration leak by Belsen Group
Checks for authentication bypass vulnerability inFortinet's FortiOS, potentially exploited by remote attackers.