
CVE-2023-4636
Unauthenticated Remote Code Execution with default Imagick

Unauthenticated Remote Code Execution with default Imagick
Django SQL injection vulnerability

Proof-of-concept exploit for CVE-2021-29447, an authenticated XXE vulnerability in WordPress 5.6-5.7. Includes lab setup, malicious WAV generation,…

Python exploit script for Elastix 2.2.0 LFI vulnerability (CVE-2012-4869) enabling remote code execution via Perl reverse shell payload injection.

CVE-2023-45878 easy exploit | revers sehell

This contains single-file exploit for ProFTPd 1.3.5 mod_copy (CVE-2015-3306) vulnerability, especially for TryHackMe Kenobi Lab.

simulation experiment of Curveball (CVE-2020-0601) attacks under ECQV implicit certificates with Windows-like verifiers

fall2022 secure coding CVE-2019-13272 : Linux Kernel Improper Privilege Management Vulnerability

An empirical security testbed evaluating prompt injection, confused-deputy vulnerabilities, and tool-calling defenses in LLM agents.

Detailed technical write-up and proof-of-concept for CVE-2026-25548, a critical RCE in InvoicePlane 1.7.0 via LFI and log poisoning, including attack…

Hi, I’m K, This is my first CVE, which is a Remote Code Execution (RCE) vulnerability. It is the beginning of my journey as a security researcher.

Proof of concept (builder) for CVE-2026-39973 (apktool)

CVE-2026-3171 and CVE-2026-3170 vulnerability disclosure by Archana M

Detailed penetration test report demonstrating unauthenticated path traversal (CVE-2019-11447) in WordPress Simple Backup plugin, including…

A basic analysis about CVE-2021-35942. SQL injection in Django.

Mini-paper on CVE-2017-2751, HP EFI password extraction.

Fuzzing Embedded Systems using Hardware Breakpoints

🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.