
CVE-2025-59528-PoC
PoC for CVE-2025-59528 used to achieve remote code execution on the Silentium machine at HTB
api-security-testingeducationexploitation+3

PoC for CVE-2025-59528 used to achieve remote code execution on the Silentium machine at HTB

Exploit for CVE-2020-23839, a reflected XSS in GetSimple CMS v3.3.16 admin login, chaining to remote code execution via a PHP backdoor WebShell.

Lab report analyzing CVE-2025-68613 expression injection in n8n, demonstrating sandbox escape via crafted payloads to access sensitive server files,…