rce
Here are 30 public repositories matching this topic...
This repository is a Dockerized php application containing a LFI (Local File Inclusion) vulnerability which can lead to RCE (Remote Code Execution).
-
Updated
Jun 16, 2022 - PHP
Exploit for Joomla JCK Editor 6.4.4 (CVE-2018-17254)
-
Updated
Apr 17, 2021 - PHP
Easy OWASP Inspired CTF | Web 2 Root
-
Updated
Mar 15, 2024 - PHP
Log4j RCE - (CVE-2021-44228)
-
Updated
Dec 13, 2021 - PHP
Patch for CVE-2025-54236(a.k.a Session Reaper) which allows customer account takeover and RCE under certain conditions. This patch is actually a Magento 2 extension and universal compatible for Magento 2.3 & 2.4. If you cannot upgrade Magento or cannot apply the official hotfix, try this one.
-
Updated
Nov 9, 2025 - PHP
A vulnerable lab for understanding difference between LFI and File Retrieval
-
Updated
Aug 11, 2024 - PHP
CVE-2026-63223 PoC — CodeIgniter 4 is_image/mime_in File Upload RCE (CVSS 9.8). Unauthenticated remote code execution via unrestricted file upload bypass using image magic bytes. Fixed in v4.7.4.
-
Updated
Aug 3, 2026 - PHP
The command injection sandbox is a tool for testing command injection vulnerabilities in web apps, in a safe environment.
-
Updated
Jun 10, 2023 - PHP
Remote Code Execution Router/Load Balancer
-
Updated
Feb 17, 2021 - PHP
Remote Code Execution Client
-
Updated
Feb 17, 2021 - PHP
Remote Code Execution Server
-
Updated
Feb 15, 2021 - PHP
WARNING: This is a vulnerable application to test the exploit for the Cacti command injection (CVE-2022-46169). Run it at your own risk!
-
Updated
Apr 3, 2023 - PHP
A simple PHP-based webshell that mimics a terminal interface, allowing execution of server-side commands for testing purposes.
-
Updated
Mar 25, 2026 - PHP
Add this topic to your repo
To associate your repository with the rce topic, visit your repo's landing page and select "manage topics."