
CVE-2023-46805_CVE-2024-21887
An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access…

An authentication bypass vulnerability in the web component of Ivanti ICS 9.x, 22.x and Ivanti Policy Secure allows a remote attacker to access…

CVE-2023-28354

CVE-2022-1388 F5 BIG-IP iControl REST RCE

command injection vulnerability in the web server of some Hikvision product. Due to the insufficient input validation, attacker can exploit the…

Exploit for CVE-2022-46169

Citrix Unauthorized Remote Code Execution Attacker - CVE-2019-19781

CVE 2021-44228 Proof-of-Concept. Log4Shell is an attack against Servers that uses vulnerable versions of Log4J.


Apache Struts 2.0 RCE vulnerability - Allows an attacker to inject OS commands into a web application through the content-type header

CVE-2022-1388 is an authentication bypass vulnerability in the REST component of BIG-IP’s iControl API that was assigned a CVSSv3 score of…

The flaw allows an attacker to execute arbitrary system commands on the server hosting the Pterodactyl Panel without any prior authentication.

A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an…

This vulnerability exists in OpenBSD’s mail server OpenSMTPD’s “smtp_mailaddr()” function, and affects OpenBSD version 6.6. This allows an attacker…

GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet or Microsoft SharePoint…

CVE-2025-20029: Command Injection in TMSH CLI in F5 BIG-IP

PoC for Unauthenticated RCE in FortiSandbox via CVE-2026-39808

Arbitrary Code Execution on FuguHub 8.4