
CVE-RUBY
Ruby 4.0 Universal RCE Deserialization Gadget Chain - Draft or TODO

Ruby 4.0 Universal RCE Deserialization Gadget Chain - Draft or TODO
KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

Universal stack-based buffer overfow exploitation tool

Universal exploitation tool for CVE-2025-33073 targeting Windows Domain Controllers with DNSAdmins privileges and WinRM enabled.

cve-2020-0688 UNIVERSAL Python implementation utilizing ASPX webshell for command output

Patch for CVE-2025-54236(a.k.a Session Reaper) which allows customer account takeover and RCE under certain conditions. This patch is actually a…

CVE-2024-35250 demonstrates that HVCI is not a defense against data-only kernel exploits. As long as a driver bug provides an arbitrary R/W…

My CVE in Oracle FLEXCUBE Universal Banking

a C exploit for CVE-2025-27591, which allow an attacker to escalate privilege to root.

Universal local privilege escalation Proof-of-Concept exploit for CVE-2024-1086, working on most Linux kernels between v5.14 and v6.6, including…

WebLogic Insecure Deserialization - CVE-2019-2725 payload builder & exploit

A Python program implementing and exploiting the Minsky Turing machine considered in the paper "Intrinsic Propensity for Vulnerability in Computers?…

Generate backdoored RSA keys using SETUP

Universal xss PoC with multiple target sites (CVE-2015-0072)

CVE-2021-43530 A Universal XSS vulnerability was present in Firefox for Android resulting from improper sanitization when processing a URL scanned…