
CVE-2021-41773-exercise
Hands-on lab to exploit Apache 2.4.49 path traversal (CVE-2021-41773) using Docker, Nmap scanning, and curl to retrieve a flag.

Hands-on lab to exploit Apache 2.4.49 path traversal (CVE-2021-41773) using Docker, Nmap scanning, and curl to retrieve a flag.

A collection of CTF write-ups, pentesting topics, guides and notes. Notes compiled from multiple sources and my own lab research. Topics also support…


Eventin <= 4.0.34 - Authenticated (Contributor+) Privilege Escalation via User Email Change/Account Takeover

A proof of concept injectable C++ dll, that uses naked inline hooking and direct memory modification to change your TeamViewer permissions.

Exploit script for Apache HTTP Server 2.4.49/2.4.50 path traversal and remote code execution (CVE-2021-41773). Includes Docker-based reproduction…

Proof-of-concept exploit for Apache HTTP Server 2.4.49/2.4.50 path traversal vulnerability (CVE-2021-41773) enabling remote code execution via CGI…

Exploit the dirtycow vulnerability to login as root

Bypass Authentication

Detailed disclosure of CVE-2025-22963, a CSRF vulnerability in Teedy <= v1.11 enabling account takeover via forced user information changes.

pz-frontend-manager < 1.0.6 - CSRF Profile Picture Exploit

Proof-of-concept exploit for Apache HTTP Server 2.4.49 path traversal vulnerability (CVE-2021-41773) with remote code execution and reverse shell…

Proof-of-concept exploit for Apache HTTP Server 2.4.49 path traversal (CVE-2021-41773) with Docker-based lab environment and patch diff analysis.

The first vulnerability with the CVE identifier CVE-2021-41773 is a path traversal flaw that exists in Apache HTTP Server 2.4.49.

Setting up POC for CVE-2021-26084

Proof-of-concept exploit for Apache HTTP Server path traversal vulnerability CVE-2021-41773, with Docker setup and detailed vulnerability analysis.

Educational lab demonstrating CVE-2022-33891 exploitation and patch application for Apache Spark with ACL authentication, including PoC verification…

Proof-of-concept demonstrating incorrect access control in Unifiedtransform v2.0, allowing teachers to modify section details. Includes step-by-step…