
CVE-2024-40110
Proof-of-concept script demonstrating unauthenticated remote code execution in Sourcecodester Poultry Farm Management System via the vulnerable…

Proof-of-concept script demonstrating unauthenticated remote code execution in Sourcecodester Poultry Farm Management System via the vulnerable…

Remote code execution Vulnerability in QloApps (version 1.6.0.0)

cve-2018-6574 @pentesterlab

Detailed CVE-2021-31856 report with PoC and code analysis for a SQL injection vulnerability in Meshery's pattern file API, enabling unauthenticated…

In PESCMS Team 2.2.1, attackers may upload and execute arbitrary PHP code through /Public/?g=Team&m=Setting&a=upgrade by placing a .php file in a…

GEO my WordPress < 4.5.0.2 - Unauthenticated LFI to RCE/PHAR Deserialization

Demonstration of CVE-2022-42889 (Text4Shell) remote code execution vulnerability in Apache Commons Text with a proof-of-concept exploit.

Proof-of-concept exploit for CVE-2018-6574, a remote code execution vulnerability in Go's net/http package via crafted HTTP requests.

GHSA-4cx5-89vm-833x/CVE-2024-52800

PostX <= 4.1.16 - Missing Authorization to Arbitrary Plugin Installation/Activation

Vayu Blocks – Gutenberg Blocks for WordPress & WooCommerce <= 1.1.1 - Missing Authorization to Unauthenticated Arbitrary Plugin…

Exploit for the Rails CVE-2019-5420

GiveWP – Donation Plugin and Fundraising Platform <= 3.19.3 - Unauthenticated PHP Object Injection

CVE-2021-46362: FreeMarker Server-Side Template Injection in Magnolia CMS

CVE-2016-2098 - POC of RCE Ruby on Rails: Improper Input Validation (CVE-2016-2098) in bash. Remote attackers can execute arbitrary Ruby code by…

DS.DownloadList <= 1.3 - Unauthenticated PHP Object Injection


Go-based proof-of-concept exploit for CVE-2018-6574, demonstrating remote code execution via crafted requests to vulnerable Go applications.