A Proof of Concept for chaining CVE-2025-6018 (PAM/Polkit Active Session Bypass) and CVE-2025-6019 (libblockdev SUID Mount Flaw) to achieve Local Privilege Escalation (LPE) on vulnerable Linux systems.
☆17Feb 9, 2026Updated 5 months ago
Alternatives and similar repositories for CVE-2025-6018-6019-PoC
Users that are interested in CVE-2025-6018-6019-PoC are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- CVE-2025-8110 PoC☆28Dec 24, 2025Updated 6 months ago
- Welcome to h4cker_b00k, a sheet where the write up's of different CTF's are to learn ethical hacking...☆18Updated this week
- This Python PoC exploits CVE-2024-46987, a Path Traversal bug in Camaleon CMS 2.8.0 < 2.8.2 (work on 2.9.0). It allows authenticated use…☆27May 10, 2026Updated 2 months ago
- JetBrains TeamCity 2023.05.3 - Remote Code Execution (RCE), CVE-2023-42793☆11Apr 24, 2024Updated 2 years ago
- Wing FTP Server Remote Code Execution (RCE) Exploit (CVE-2025-47812)☆55Jul 14, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- PHP mt_rand() seed cracker☆78Jan 17, 2021Updated 5 years ago
- A PoC exploit for CVE-2023-43208 - Mirth Connect Remote Code Execution (RCE)☆29Apr 30, 2026Updated 2 months ago
- Python script to execute commands via Erlang/OTP Distribution Protocol☆15Feb 6, 2024Updated 2 years ago
- A tool for customize XFCE☆21Sep 24, 2020Updated 5 years ago
- Add headers to all Burp requests to bypass some WAF products☆44Nov 30, 2023Updated 2 years ago
- ☆11Nov 5, 2018Updated 7 years ago
- 🔗 Source for the Caido plugin store☆21Jul 5, 2026Updated 2 weeks ago
- ☆11Jun 19, 2024Updated 2 years ago
- ☆27Aug 11, 2025Updated 11 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- My mobile writeups repository☆34Nov 19, 2025Updated 8 months ago
- some sploits☆19Sep 20, 2024Updated last year
- An S3 account ID enumeration and bucket discovery tool☆21Mar 15, 2026Updated 4 months ago
- Enumerate Microsoft service access from a refresh token☆23Apr 1, 2026Updated 3 months ago
- Information gathering tool using OSINT and AI☆17Nov 21, 2024Updated last year
- Unauthenticated RCE in ZoneMinder Snapshots - Poc Exploit☆23May 7, 2024Updated 2 years ago
- ☆20Mar 3, 2025Updated last year
- Bash script for CTF automating basic enumeration☆40Mar 1, 2022Updated 4 years ago
- CVE's we discovered along the way☆17Oct 18, 2021Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- GMDB2, the official GUI for MDB Tools☆36Sep 3, 2021Updated 4 years ago
- ☆10Jul 28, 2021Updated 4 years ago
- Determine the Version Running on the Palo Alto Network Firewall for the Global Protect Portal☆12Aug 14, 2020Updated 5 years ago
- A command-line scanner for batch detection of Next.js application versions and determining if they are affected by CVE-2025-66478 vulnera…☆427Dec 16, 2025Updated 7 months ago
- Source code and solution of CTF challenges that I created.☆45Jun 25, 2025Updated last year
- Bruteforce Keepass databases (KDBX 4.x format)☆159Jul 16, 2024Updated 2 years ago
- 🗝️ The Voidweaver's Trail: Season 1 Investigation Reports for Echo Response. Uncovering hidden identities and securing the Nullform Key …☆15Mar 5, 2026Updated 4 months ago
- Nginx Rewrite CVE Scan(CVE-2026-42945 nginx-rift CVE-2026-9256)☆33May 27, 2026Updated last month
- some of the commands I usually use when doing HTB machines☆55Jan 1, 2024Updated 2 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Your NTDLL vaccine from modern direct syscall methods.☆36Apr 5, 2022Updated 4 years ago
- Burp extension to edit messages with UTF-8☆12Jul 3, 2018Updated 8 years ago
- Python script that converts Grafana hash digests to PBKDF2_HMAC_SHA256 format in order to facilitate password cracking using Hashcat.☆28Oct 24, 2021Updated 4 years ago
- ☆17Mar 23, 2026Updated 3 months ago
- Apache Tomcat(CVE-2024-50379)条件竞争致远程代码执行漏洞批量检测脚本☆23Apr 1, 2025Updated last year
- ToolShell scanner - CVE-2025-53770 and detection information☆18Dec 7, 2025Updated 7 months ago
- Chinese mirror of Tryhackme tutorials☆17Dec 11, 2025Updated 7 months ago