
CVE-2025-27591-Meta-below-LPE
CVE-2025-27591 – Meta below symlink following local privilege escalation (HackTheBox CTF)

CVE-2025-27591 – Meta below symlink following local privilege escalation (HackTheBox CTF)


[First-Blood-XO] React Server Component endpoint vulnerable to CVE-2025-55182 (RCE) → enumerated SUID binaries → /usr/bin/perl had SUID set → used…

Interactive cybersecurity scenario simulating a Tesla TPMS to VCSEC to CAN Bus attack chain, teaching vehicle security concepts through gamified…

Proof-of-concept crash exploit for CVE-2019-0708 (BlueKeep), targeting a remote code execution vulnerability in Windows RDP service.

Erlang/OTP SSH 远程代码执行漏洞

PoC code for vulnerability in webmod v0.48. Originally written in 2007, assigned CVE-2007-1260.

a signal handler race condition in OpenSSH's server (sshd)

a python3 version of the exploit written for CVE-2014-6287. Useful for completing the "Steel Mountain" room on TryHackMe.com without the use of…

An exploitation for the /dev/exynos-mem vulnerability introduced in earlier samsung phones.

Proof-of-concept exploit for CVE-2024-39840, a remote code execution vulnerability in Factorio 1.1.86. Adapted from a detailed writeup, demonstrating…

Introduction to the exploitation of ELF binaries.

Untested completition of the Redishell PoC made by AI


beginner friendly write-up for the TryHackMe easy level module- polkit:CVE-2021-3560

CVE-2024-27130是影响QNAP网络附加存储(NAS)设备的一个严重漏洞。该漏洞源于QTS操作系统中share.cgi脚本的No_Support_ACL函数中不安全地使用strcpy函数,导致堆栈缓冲区溢出。攻击者可以利用此漏洞,通过精心构造的请求在目标系统上执行任意代码,进而完全控制受影…

CVE-2019-17080