
CVE-2019-0708-PoC-Hitting-Path
It's only hitting vulnerable path in termdd.sys!!! NOT DOS

It's only hitting vulnerable path in termdd.sys!!! NOT DOS

Educational lab for understanding Java deserialization vulnerabilities with PoC exploits for JBoss CVEs, gadget chain analysis, and a vulnerable HTTP…

Educational examples porting Linux kernel vulnerabilities to Rust, featuring intentionally vulnerable code and exploits for learning kernel security…

Exploit LnvMSRIO.sys vulnerable driver

Proof-of-concept exploit for CVE-2020-16152: LFI-to-RCE in Aerohive/Extreme Networks HiveOS via PHP string truncation and log poisoning, enabling…

Educational exploit for CVE-2022-2588, a Linux kernel race condition leading to privilege escalation. Includes Vagrant setup for a vulnerable machine…

Linux kernel privilege escalation exploit for CVE-2014-3153 (Towelroot). Provides a working implementation to gain root access on vulnerable systems.

Exploit for CVE-2023-52271 in C++. The code exploits the vulnerable driver wsftprm.sys kernel driver 2.0.0.0, which allows kernel-level access to…

Proof-of-concept exploit and writeup for CVE-2022-44789, a heap buffer overflow in MuJS JavaScript interpreter, including vulnerable version and…

A simple POC that demonstrates A vulnerability found in IObitUnlocker 1.1.2 that leverages IOCTL codes found it its vulnerable driver…

Heap-based buffer overflow exploit for CVE-2021-3156 in sudo, offering local privilege escalation to root on vulnerable Linux systems.

Proof-of-concept exploit for CVE-2022-23222, a Linux kernel local privilege escalation via eBPF. Demonstrates ring buffer manipulation and map…

Exploit for CVE-2021-3156, a heap-based buffer overflow in sudo, enabling local privilege escalation to root on vulnerable systems.

Demonstrates CVE-2026-2222 heap overflow in MQTT CONNECT packet handling with a simulated vulnerable broker and proof-of-concept exploit code for…

Demonstrates a Rust use-after-free in a web server with vulnerable code and a multithreaded trigger to show memory corruption and possible code…

Educational lab environment for CVE-2021-3156 (Baron Samedit) with a Dockerized vulnerable sudo target, exploit scaffold, canary test, root-cause…

Proof-of-concept exploit for CVE-2024-6387 targeting vulnerable OpenSSH servers via heap manipulation and race condition to achieve remote code…

Local privilege escalation exploit for Linux targeting CVE-2026-68138 to elevate privileges from unprivileged users to root on vulnerable systems.