
My-CVEs
CVE's I found. technical writeups, expolitation examples and fuzzing sessions walkthroughs

CVE's I found. technical writeups, expolitation examples and fuzzing sessions walkthroughs

CVE-2026-50343 InstallService StaticPluginMap EoP - standard user to SYSTEM

There are many cheat sheets out there, but this is mine.

Course enrolments allowed privilege escalation from teacher role into manager role to RCE

LID — Linux Integrity Drift: Bypassing AppArmor via eBPF pathname rewriting. Pre-LSM syscall argument manipulation with zero audit footprint. "Linux…

CVE-2026-0047: Missing permission check in ActivityManagerService.dumpBitmapsProto() — steal UI bitmaps from every running app with zero permissions…

:pager: a tiny code that performs kernel-mode read/write using CVE-2023-38817.

Authenticated privilege escalation in Camaleon CMS v2.9.0 via improper parameter handling in the updated_ajax endpoint.


bash CLI trainer — 30 levels from ls to privilege escalation

A detailed walkthrough of Billing room exploiting CVE-2023-30258 and escalating via fail2ban misconfig

Python script to exploit Privilege Escalation in Camaleon CMS.

Linux Kernel nf_tables Use-After-Free (CVE-2026-23111) — LPE PoC

Gogs RCE via argument injection in git rebase (CWE-88) — Python PoC. CVE-2026-52806

Case study and POC of CVE-2017-12635: Apache CouchDB 1.7.0 / 2.x < 2.1.1 - Remote Privilege Escalation

CVE-2026-23744 RCE + Privilege Escalation

Independent security research on Cisco products — CUCM, Expressway, FTD, ISE

The exploit targets a critical privilege escalation vulnerability in macOS versions Monterey, Ventura, and Sonoma.