
THM-Steel_Mountain-CVE-2014-6287
A write up on the Steel Mountain box from TryHackMe.com and exploit for CVE-2014-6287
Tools for testing, exploiting, and securing web applications and APIs.

A write up on the Steel Mountain box from TryHackMe.com and exploit for CVE-2014-6287

A write up on the TryHackMe room Source & a python script to exploit the vulnerability

A Deliberately Vulnerable Web Application built on Struts 2 (CVE-2017-5638) and Log4J (CVE-2021-44228) for testing and demonstration of OWASP Top 10…

Nmap NSE script that discovers/exploits Heartbleed/CVE-2014-0160

A scanning suite to find servers affected by the log4shell flaw (CVE-2021-44228) with example to test it



Verify Next.js CVE-2025-29927 on Netlify not vulnerable

A ModSecurity ruleset for detecting potential attacks using CVE-2018-6389

PoC for CVE-2020-8165

CVE-2022-39275 Setup and POC

Webmin 1.580 /file/show.cgi Remote Code Execution

CVE-2023-50564 PoC

Detection rules for CVE-2026-23918 Apache http2 RCE - Credit: stringa.ai, isec.pl

Reproduction for CVE-2022-46175

Educational exploit for CVE-2022-30190

Buffer overflow in Sync Breeze Enterprise 10.0.28 allows remote attackers to have unspecified impact via a long username parameter to /login

CVE-2021-30461