
CVE-2025-27591
self cleaning CVE-2025-27591 Poc that grants a root reverse shell instead of modifying passwd files

self cleaning CVE-2025-27591 Poc that grants a root reverse shell instead of modifying passwd files

Proof-of-concept exploit for WinRAR path traversal vulnerability (CVE-2025-6218) enabling remote code execution via crafted archive files. Includes…

CVE-2025-6218 is a directory traversal vulnerability in WinRAR that allows an attacker to place files outside the intended extraction directory when…

CVE-2019-1422 exploit targeting Windows privilege escalation via deletion of system temp directory files (teredo.txt, iphttps.txt).

Proof-of-concept exploit for CVE-2022-46689 (MacDirtyCow), a privilege escalation vulnerability in macOS XNU kernel exploiting a race condition in…

Proof-of-concept exploit for CVE-2014-7911 targeting Android 4.4.4 on Nexus5, using a custom ROP chain to escalate privileges and write files as the…

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

Proof-of-concept exploit for CVE-2015-5119, a Flash Player zero-day vulnerability enabling remote code execution via crafted SWF files.

Modified .NET deserialization payload for CVE-2021-42321, based on ysoserial.net, that writes files and bypasses Windows Defender to target Microsoft…

Reproduction of CVE-2023-34312 using two malicious DLL files to exploit QQ and TIM messaging applications for security research and testing.

DirtyPipe: Exploit for a new Linux vulnerability known as 'Dirty Pipe(CVE-2022-0847)' allows local users to gain root privileges. The vulnerability…

CVE-2026-41091 RedSun | Microsoft Defender LPE exploit. Low-privileged users gain NT AUTHORITY\SYSTEM 🔥 via Cloud Files API + NTFS junction…

Generates weaponized JPEG files exploiting CVE-2025-50165 (Windows Graphics RCE) with custom x64 shellcode, heap spray, ROP chain, and AV/EDR evasion…

A simple POC that demonstrates A vulnerability found in IObitUnlocker 1.1.2 that leverages IOCTL codes found it its vulnerable driver…

Proof-of-concept exploit for CVE-2022-0847 (Dirty Pipe), a Linux kernel race condition enabling unprivileged writes to read-only files and privilege…

All files needed to reproduce PoC for CVE-2021-26415: https://www.cloaked.pl/2021/04/cve-2021-26415/

Source code and configuration files related to our article in MISC96

Metasploit modules and payload generation files from my Houston Perl Mongers talk about this vulnerability.