
CVE-2021-31760
Exploiting a Cross-site request forgery (CSRF) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

Exploiting a Cross-site request forgery (CSRF) attack to get a Remote Command Execution (RCE) through the Webmin's running process feature

Proof-of-concept exploit for CVE-2023-37250, a local privilege escalation vulnerability in Windows, with a detailed write-up explaining the roaming…

Proof-of-concept exploit for CVE-2018-6574, demonstrating remote command execution in Go's go get command via malicious compiler plugins during…

CVE-2018-6574: go get RCE solution for pentesterlab challenge

An intentionally vulnerable webapp to get your hands dirty with CVE-2022-42889.

Proof-of-concept exploit for CVE-2018-6574, a remote code execution vulnerability in Go's 'go get' command via malicious package import paths.

Proof-of-concept exploit for CVE-2025-49132, a path traversal vulnerability in Pterodactyl panel. Forges session cookies using exposed Redis server…

How to get access via CVE-2022-27997

PoC for CVE-2020-8165

Proof-of-concept exploit for CVE-2018-6574, a remote code execution vulnerability in Go's 'go get' command, demonstrating arbitrary code injection…

Scripts to get infos

Exploit and report for CVE-2022-43293

Proof-of-concept exploit for CVE-2018-6574, a remote code execution vulnerability in Go's 'go get' command, demonstrating arbitrary code execution…