
RemoteDLLInjector
RemoteDLLInjector

RemoteDLLInjector

PoC for PwnKit: Local Privilege Escalation Vulnerability in polkit’s pkexec in Python

Reverse-engineered runtime engine for Roblox/Luau with VM hooking, opcode remapping, capability escalation, and UNC script environment for executing…

Heap-based buffer overflow exploit for CVE-2021-3156 in sudo, offering local privilege escalation to root on vulnerable Linux systems.

CVE-2023-34468: Remote Code Execution via DB Components in Apache NiFi

An authentication bypass was recently discovered (https://www.webarxsecurity.com/vulnerability-infinitewp-client-wp-time-capsule/) on WP Time Capsule…

Proof-of-concept exploit for CVE-2026-6471, demonstrating privilege escalation in PostgreSQL via logical decoding dlopen to achieve arbitrary code…

解决php提权的时候因系统禁用函数导致无法执行命令的情况

Exploit for CVE-2026-17544: PHP bcmath OOB write converted into memory-only RCE, bypassing disable_functions and open_basedir with a runtime…

Unauthenticated RCE exploit for Realtyna WPL < 5.3.0 that uploads a PHP webshell via hardcoded API key and executes arbitrary system commands.

CVE-2023-22809 Linux Sudo

Proof-of-concept exploit for CVE-2025-57819 in FreePBX: SQL injection in the AJAX API to execute arbitrary PHP, create a persistent webshell, and…

Improper Symbolic link handling in the PutContents API in Gogs allows Local Execution of Code.

CVE-2025-54123 Hoverfly Authenticated Middleware Command Injection RCE

Go-based proof-of-concept for CVE-2025-55182, a critical RCE in React Server Components. Features vulnerability checking, command execution, memory…

Winrar CVE exploitation before 7.13 using multiple ADS streams on a single file (Custom PDF implementation)

Python proof-of-concept for CVE-2026-67401, an authenticated SQL injection in cPanel EmailTrack that allows arbitrary file write as root via SQLite…

Remote Code Execution Exploit for Langflow (CVE-2025-3248) - [ By S4Tech ]