
CVE-2022-33679
poc of CVE-2022-33679

poc of CVE-2022-33679

Proof-of-concept exploit for CVE-2026-41096: heap overflow in Windows DNS Client's DnsRawTruncateMessageForUdp(). Includes rogue DNS server and…

This package is not a complete root. It flips SELinux to Permissive and holds reclaim long enough for follow-on work. Host `uid=0` is not achieved…

CVE-2024-35250 PoC - Optimized & Condensed Form of Varwara's PoC

Proof-of-concept exploit for CVE-2022-38181, demonstrating the vulnerability and its impact.

Wrapper for CVE-2022-4543 exploit that de-randomizes kernel base address via KASLR bypass, enabling reliable kernel exploitation on affected Linux…

End-to-end exploitation lab for CVE-2025-5548 (FreeFloat FTP Server stack buffer overflow). Includes static analysis with IDA/Ghidra, binary fuzzing,…

Old CVE, but new way to leak everything.

CVE-2025-40271 Modifed By MadEploits

jump over aslr attacking branch predictors to bypass aslr Technique

Step-by-step walkthrough for exploiting CVE-2015-1328 (OverlayFS) to escalate privileges from a low-privileged user to root on Ubuntu 14.04. Includes…

Full compromise of TryHackMe's Ice machine — Icecast 2.0.1 RCE (CVE-2004-1561) via buffer overflow, followed by Windows privilege escalation through…

Don't be evil.

Educational standalone JavaScript implementation of the public exploit for CVE-2016-9079 (Firefox Use-After-Free), adapted from the original…

Proof of Concept (PoC) for a stack-based buffer overflow in Steghide 0.5.1. Demonstrates how long file paths trigger a crash (DoS) and leak sensitive…

CVE-2024-1086 vulnerability

This is a suite of tools/PoCs/exploits for cameras using the iCSee application. And yes - it can run NES games!

A flaw was found in NGINX, specifically within the ngx_http_rewrite_module. An unauthenticated attacker can exploit this vulnerability by sending…