
CVE-2021-44228---Log4Shell-Analysis
Technical deep dive into Apache Log4j2 JNDI injection vulnerability. Features static code analysis, patch comparison, attack vectors (LDAP/RMI/DNS),…

Technical deep dive into Apache Log4j2 JNDI injection vulnerability. Features static code analysis, patch comparison, attack vectors (LDAP/RMI/DNS),…

beginner friendly write-up for the TryHackMe easy level module- polkit:CVE-2021-3560

log4shell sample application (CVE-2021-44228)

Docker container for CVE-2016-10033 (PHPMailer remote code execution) used for practicing exploitation in a controlled lab environment.

Proof-of-concept exploit for CVE-2023-32571 demonstrating Dynamic Linq injection to achieve remote code execution, with a Docker-based lab…

A Proof-Of-Concept for the CVE-2021-44228 vulnerability.

Docker container providing a vulnerable environment for CVE-2019-9978 (WordPress Social Networks Auto Poster RCE) for security training and…

Step-by-step penetration testing lab exploiting Samba CVE-2007-2447 on Metasploitable 2 using Metasploit, demonstrating root compromise, credential…

This is a tiny lab that simulates the core idea reported for CVE-2025-54236 (“SessionReaper”)

Dockerized vulnerable environment for CVE-2016-8869 (Joomla privilege escalation) used for security training and exploitation practice.

Log4Shell (CVE-2021-44228) exploit demo for SEAS 8405. Includes a vulnerable Spring Boot app, fake LDAP server, Docker setup, MITRE mapping, incident…

Proof-of-concept exploit for CVE-2025-29927, a Next.js middleware bypass vulnerability. Includes version-specific payloads and a Docker-based lab for…


Docker container providing a vulnerable environment for CVE-2018-3811, designed for security testing and exploit practice within the Cved vulnerable…

Docker-based vulnerable environment for CVE-2017-4971 (Spring WebFlow RCE) to practice exploitation and security testing in a controlled lab setup.

Docker container with a pre-configured CVE-2010-0426 environment for practicing privilege escalation exploitation in a controlled lab setting.


Docker container with a pre-configured vulnerable Elasticsearch instance for practicing CVE-2015-1427 exploitation in a safe lab environment.