
CVE-2018-6574
Proof-of-concept exploit for CVE-2018-6574, a remote code execution vulnerability in Go's net/http package via crafted HTTP/2 requests.

Proof-of-concept exploit for CVE-2018-6574, a remote code execution vulnerability in Go's net/http package via crafted HTTP/2 requests.
Proof-of-concept exploit for CVE-2020-5245, demonstrating expression language injection in Dropwizard REST endpoints via crafted HTTP parameters.

CVE-2024-56115 proof-of-concept for Amiro.CMS XSS and OS command injection vulnerabilities, enabling security researchers to test and validate…

Dolibarr 17.0.0 PHP Code Injection Exploit

PoC for CVE-2024-23998

CVE-2022-22947 exploit script

Wordpress IgniteUp plugin < 3.4.1 allows unauthenticated users to arbitrarily delete files on the webserver possibly causing DoS.

Proof-of-concept exploit for CVE-2022-27772 targeting Grails 3.3 framework's custom TomcatEmbeddedServletContainerFactory, demonstrating insecure…

Details about the Blind RCE issue(SPX-GC) in SPX-GC

Swift Performance Lite <= 2.3.7.1 - Unauthenticated Local PHP File Inclusion via 'ajaxify'

CVE-2024-29399 reference

Proof-of-concept exploit for CVE-2024-22411 targeting the Avo admin panel. Demonstrates vulnerability exploitation in Ruby-based web applications.

CVE-2018-6574 go get RCE

CSV Injection exists in InterMind iMind Server through 3.13.65 via the csv export functionality.

Proof-of-concept exploit for SQL injection vulnerability in Online Timesheet App, demonstrating the attack and providing technical details for…

Exploit for CVE-2019-3396, a path traversal and RCE vulnerability in Confluence Server, enabling unauthorized file read and remote code execution.

Proof-of-concept exploit for CVE-2023-33733, demonstrating remote code execution in the Reportlab library via crafted PDF generation.

Proof-of-concept exploit for CVE-2018-6574, a remote code execution vulnerability in Go's net/http package. Demonstrates exploitation of improper…