
CVE-2025-31161
A proof of concept for CVE-2025-31161, using mangled HTTP header to perform unauthenticated impersonation of any user in Crush FTP server.
authenticationexploitationpenetration-testing+3

A proof of concept for CVE-2025-31161, using mangled HTTP header to perform unauthenticated impersonation of any user in Crush FTP server.

Proof-of-concept exploit for CVE-2018-13257 demonstrating CAS host header spoofing in Blackboard Learn to hijack user sessions via a malicious…

POC for CVE-2023-24488

Here is a simple but effective exploit for CVE-2025-29927.

Python exploit for CVE-2011-3192 (Apache Range Header Denial of Service). Executes multi-threaded HTTP requests to exhaust server resources. Requires…