
CVE-2018-16763
CVE-2018-16763 FuelCMS 1.4 Remote Code Execution, this version of FuelCMS is still vulnerable until now

CVE-2018-16763 FuelCMS 1.4 Remote Code Execution, this version of FuelCMS is still vulnerable until now

proof of concept to CVE-2022-30190 (follina)


Recreation of the SharePoint PoC for CVE-2023-29357 in C# from LuemmelSec

本脚本是针对 GeoServer 的远程代码执行漏洞(CVE-2024-36401)开发的 PoC(Proof of Concept)探测工具。该漏洞允许攻击者通过构造特定请求,在目标服务器上执行任意命令。

log4j2 Log4Shell CVE-2021-44228 proof of concept

CVE-2023-50164 (Apache Struts path traversal to RCE vulnerability) - Proof of Concept

Proof of concept for authenticated SQL injection in Coaching Management System, demonstrating database dump via unsanitized complaintreply parameter.

CVE-2026-42778 EUVD-2026-26492 Deserialization of Untrusted Data (CWE-502)

FacturaScripts RCE Exploit - Proof of Concept

Proof of concept demonstrating prototype pollution in DOMPurify leading to client-side XSS, with a demo of the attack chain.

Exploit PoC of CVE-2026-6356

PoC exploit for CVE-2025-59536, a high-severity code injection vulnerability in Claude Code's startup trust dialog, enabling remote exploitation of…

A Proof of Concept (PoC) for CVE-2025-52913, a path normalization vulnerability affecting Mitel MiCollab.

Proof-of-concept exploit for CVE-2023-32315, providing a demonstration of the vulnerability for security testing.

Scans for and exploits CVE-2022-22954 in VMware Workspace ONE Access, Identity Manager, and Realize Automation appliances. Automates detection and…

Step-by-step demonstration of CVE-2021-29447, a WordPress Media Library XXE vulnerability leaking sensitive files via crafted WAVE uploads, including…

Step-by-step demonstration of CVE-2022-22978 authorization bypass in Spring Security's RegexRequestMatcher, with vulnerable app setup, payload…