CVE walkthroughs — index
Per-CVE technical walkthroughs. Each entry is a single bug you can study, reproduce in a lab, and use as a teaching aid for the bug class. Ordered roughly by year.
The bug class link in each entry routes back to the general topic note (stack-buffer-overflow, command-injection, etc.).
Supply-chain backdoors
- cve-2024-3094-xz-utils-backdoor — five-stage SSH backdoor in liblzma
Edge-appliance pre-auth chains
- cve-2024-21762-fortios-out-of-bounds — FortiOS SSL VPN OOB write
- cve-2024-21887-ivanti-connect-secure — command injection chain
- cve-2024-3400-globalprotect-command-injection — PAN GlobalProtect
- cve-2024-1709-screenconnect-auth-bypass — ConnectWise SetupWizard path
- cve-2024-50623-cleo-rce — Cleo Harmony / VLTrader / LexiCom
Application-layer
- cve-2024-23897-jenkins-arbitrary-file-read — args4j @ expansion
- cve-2024-4577-php-cgi-argument-injection — Windows code-page best-fit
Method
For each note, use the workflow in one-day-from-patch-diff and reading-public-pocs-effectively.
See also: recent-cve-class-overview, n-day-rapid-exploitation, keeping-up-with-research-feeds.