
CVE-2022-24654
Proof-of-concept exploit for authenticated stored cross-site scripting (XSS) vulnerability in INTELBRAS ATA 200 firmware 74.19.10.21, targeting the…

Proof-of-concept exploit for authenticated stored cross-site scripting (XSS) vulnerability in INTELBRAS ATA 200 firmware 74.19.10.21, targeting the…

Proof-of-concept exploit for CVE-2022-30114, a heap-based buffer overflow in Fastweb FastGate routers. Sends a crafted HTTP Authorization header to…

Proof-of-concept exploit for CVE-2022-31898, a command injection vulnerability in GL-iNet routers (firmware < 3.215). Provides reverse shell via…

PoC Script for CVE-2022-36267: Exploits an unauthenticated remote command injection vulnerability in Airspan AirSpot 5410 antenna.

PoC Script for CVE-2022-36553: Exploits an unauthenticated remote command injection vulnerability in Hytec Inter HWL-2511-SS device.

TEM FLEX-1080/FLEX-1085 1.6.0 log log.cgi Information Disclosure

Unauthenticated RCE exploit for Fantec MWiD25-DS

Proof-of-concept exploit for CVE-2022-43096, demonstrating local root access via UART port on Mediatrix 4102 devices before v48.5.2718.

Flexwatch-CVE

Proof-of-concept exploit for command injection vulnerability in Aztech WMB250AC routers, enabling authenticated privilege escalation to root shell…

Proof-of-concept exploit for CVE-2025-45467, demonstrating remote code execution on Unitree Go1 robotic dogs via insecure MD5-based firmware…

Dahua Console, access internal debug console and/or other researched functions in Dahua devices. Feel free to contribute in this project.