
BeRoot
Privilege Escalation Project - Windows / Linux / Mac

Privilege Escalation Project - Windows / Linux / Mac

Proof-of-concept exploit for CVE-2026-37071: arbitrary file rename in Veno File Manager 4.4.9 enabling privilege escalation to super administrator…

CVE-2024-5326 Post Grid Gutenberg Blocks and WordPress Blog Plugin – PostX <= 4.1.2 - Missing Authorization to Arbitrary Options Update

Mogwai Java Management Extensions (JMX) Exploitation Toolkit

Repository dedicated to CVE-2024-23774, an unquoted Windows service path vulnerability, providing information and potential exploitation details.

Repository contains psexec, which will help to exploit the forgotten pipe

A simple POC that abuses Backup Operator privileges to remote dump SAM, SYSTEM, and SECURITY

CVE-2026-0827 PoC

An issue in AVG AVG Anti-Spyware v.7.5 allows an attacker to execute arbitrary code via a crafted script to the guard.exe component

Perforce security research and tools - CVE-2026-6043

An "Incorrect Use of a Privileged API" vulnerability in PrintixService.exe, in Printix's "Printix Secure Cloud Print Management", Version 1.3.1106.0…

A "Mishandling of Input to API" or "Exposed Dangerous Method or Function" vulnerability in PrintixService.exe, in Kofax Printix's "Printix Secure…

DJ-Classifieds Joomla Component Unauthenticated File Upload RCE. 3-string filter bypass via PHP short tags. CVSS 10.0 | CWE-434 | com_djclassifieds <…

A "Incorrect Use of Privileged APIs" vulnerability in PrintixService.exe, in Kofax Printix's "Printix Secure Cloud Print Management", Version…

Local Privilege Escalation vai `below` (CVE-2025-27591) - PoC Exploit

Citrix Workspace app before 1912 for Windows - Privilege Escalation #2

Proof-of-concept exploit for a mass assignment privilege escalation vulnerability in Camaleon CMS < 2.9.1. Authenticated low-privilege users can…

Privilege escalation in QQBrowser