
CVE-2024-27198-EXPLOIT
A PoC exploit for CVE-2024-27198 - JetBrains TeamCity Authentication Bypass

A PoC exploit for CVE-2024-27198 - JetBrains TeamCity Authentication Bypass


Proof-of-concept exploit for CVE-2020-9496 (Apache OFBiz) with nuclei template integration and step-by-step vulnerable environment setup for security…

PoC for CVE-2026-54415 — Azuriom CMS (<1.2.11) Broken Access Control → account takeover

CVE-2025-66398 — Signal K Server ≤ 2.18.0 RCE PoC

PoC exploit for CVE-2024-1813: PHP object injection in Simple Job Board WordPress plugin, achieving unauthenticated RCE via gadget chain. Includes…

Authenticated RCE exploit for Grav CMS via plugin upload, demonstrating arbitrary PHP code execution and reverse shell.

Automated exploit for DataEase: 4-vulnerability chain (auth bypass, JDBC blocklist bypass, SQL injection, Java deserialization) achieving…

POC for CVE-2026-21858

Web CTF challenge highlighting moodle CVE-2025-26529 (in 2 flavors)

Cross-Site Scripting (XSS) vulnerability exists in Webkul Krayin CRM (HTML Injection)

CVE-2024-46879 - Tiki CMS Reflected Cross-Site Scripting (XSS) Vulnerability

WordPress Custom Login And Signup Widget Plugin <= 1.0 is vulnerable to Arbitrary Code Execution

Docker-based lab for CVE-2024-27198 TeamCity authentication bypass. Includes exploit reproduction, IoC hunting with Sigma/Suricata rules, and…

Metasploit exploit for the CVE-2025-50286.

The code for personally reproducing the corresponding vulnerability

Python POC, Exploit for CVE-2026-29000

Lab for the CVE-2024-27198