
CVE-2021-40903
CVE-2021-40903

CVE-2021-40903
Proof-of-concept exploit for CVE-2025-29927, a Next.js middleware bypass vulnerability. Includes version fingerprinting, configurable header…

CVE-2021-44270

Token Login <= 1.0.3 - Authenticated (Subscriber+) Privilege Escalation

NitroPack <= 1.17.0 - Missing Authorization to Authenticated (Subscriber+) Limited Options Update

https://medium.com/@mnqazi/cve-2023-4696-account-takeover-due-to-improper-handling-of-jwt-tokens-in-memos-v0-13-2-13104e1412f3

Minterpress <= 1.0.5 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Options Update

Exploit script for CVE-2022-23131 that bypasses Zabbix SSO authentication by forging JWT tokens, enabling unauthorized admin access to the monitoring…

Vertical Privilege Escalation via Session Storage by Amjad Ali (CVE-2023-43317)

Proof-of-concept exploit for SQL injection and authentication bypass in Lodging Reservation Management System 1.0, enabling unauthorized admin access…

WatchTowerHQ <= 3.10.1 - Authentication Bypass to Administrator due to Missing Empty Value Check

A POC for the all new CVE-2023-27524 which allows for authentication bypass and gaining access to the admin dashboard.

CVE-2020-10130 - SearchBlox Product before V-9.1 is vulnerable to Business logic bypass

Exploit script for CVE-2022-40684, an authentication bypass in Fortinet FortiOS, allowing unauthorized access to the admin interface.

Modifed ver of the original exploit to save some times on password reseting for unprivileged user

Agency Toolkit <= 1.0.23 - Missing Authorization to Unauthenticated Arbitrary Options Update

Automated checker-exploit for CVE-2017-5689, scanning Intel AMT panels for authentication bypass and reporting vulnerable IPs.

Repository for CVE-2023-4800 vulnerability.