
CVE-2022-46169
Cacti Unauthenticated Command Injection

Cacti Unauthenticated Command Injection

[CVE-2021-22123] Fortinet FortiWeb Authenticated OS Command Injection

CVE-2025-54123 Hoverfly Authenticated Middleware Command Injection RCE

pdf_info <= 0.5.3 OS Command Injection

OpenSTAManager v2.9.8 and earlier versions contain a critical OS Command Injection vulnerability in the P7M (signed XML) file decoding function.

PoC exploit for GLPI - Command injection using a third-party library script

CVE-2025-69212 - OpenSTAManager has an OS Command Injection in P7M File Processing

upsmon: remote OS command injection (RCE) via attacker-controlled ups.alarm in NOTIFYCMD execution

PoC for CVE-2026-46420, command injection in shivammathur/setup-php via repository-controlled PHP version resolution.

OliveTin is a self-hosted web UI for exposing predefined shell commands to end users. This repository contains a proof-of-concept demonstrating two…

PoC exploit for CVE-2025-32778: command injection in Web-Check OSINT tool

Python RCE exploit for Sendmail with ClamAV-Milter <0.91.2 (CVE-2007-4560). Remote root command injection via SMTP RCPT TO headers.

This is a simple POC to for show the pfsense 2.7 Command injection Vulnerability ( CVE-2023-42326)

Command injection vulnerability in elFinder <= 2.1.47 via the PHP connector component. Allows unauthenticated remote code execution as the web server…

Professional PoC for CVE-2025-60787: Remote Code Execution in MotionEye (<= 0.43.1b4). This exploit demonstrates an OS Command Injection…

Python PoC for CVE-2025-60787, authenticated OS command injection RCE in motionEye <= 0.43.1b4 via unsanitized image_file_name config

Proof-of-concept exploit for CVE-2019-15107 (Webmin <= 1.920) enabling unauthenticated RCE via command injection.

A remote code execution vulnerability occurs in OpenTSDB through 2.4.0 via command injection in the yrange parameter.