
CVE-2021-42362
The WordPress Popular Posts WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the…

The WordPress Popular Posts WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the…

CVE-2021-1675 Detection Info

C exploit collection for Linux Dirty Pipe (CVE-2022-0847) local privilege escalation, including read-only file overwriting and SUID binary hijacking,…

C exploit collection for Linux Dirty Pipe (CVE-2022-0847) local privilege escalation, including read-only file overwrite and SUID binary hijacking,…

Exploit collection for CVE-2022-0847 (Dirty Pipe) Linux kernel local privilege escalation, including file overwrite and SUID binary hijacking…

Collection of exploits and documentation for the Linux Dirty Pipe vulnerability (CVE-2022-0847), enabling arbitrary file overwrite and SUID binary…

CVE-2023-50164 An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a…

ZIP Bomb Creator is a tool used to create a ZIP file that is small in size but drastically expands when extracted.

An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.

POC for CVE-2023-40028: Ghost CMS Arbitrary File Read

ThinVNC 1.0b1 is vulnerable to arbitrary file read, which leads to a compromise of the VNC server. The vulnerability exists even when authentication…

This native code file aims to be complementary to the published Whatsapp GIF RCE exploit by Awakened , by calculating the system() function address…

Docker container to setup a vulnerable elfinder version on both nginx and apache servers. Can be used to test vulnerability POC

CVE-2023-40028 affects Ghost, an open source content management system, where versions prior to 5.59.1 allow authenticated users to upload files that…

MAL-014: Authenticated Arbitrary File Read in VMware vCenter Server

EaseUS MobiMover 6.0.5 Build 21620 - Insecure Files and Folders Permissions

PoC for CVE-2022-41120/CVE-2022-44704: arbitrary file delete/write in Sysmon via ClipboardChange RPC leading to local privilege escalation on Windows.