
CVE-2023-36643
Proof-of-concept for CVE-2023-36643: an incorrect access control vulnerability in ITB-GmbH TradePro v9.5 that allows remote attackers to enumerate…

Proof-of-concept for CVE-2023-36643: an incorrect access control vulnerability in ITB-GmbH TradePro v9.5 that allows remote attackers to enumerate…

CVE-2025-49132

CVE-2025-54554 – Unauthenticated Access in tiaudit REST API leading to Sensitive Information Disclosure

WordPress Plugin Metform <= 2.1.3 - Improper Access Control Allowing Unauthenticated Sensitive Information Disclosure

CGI Print ENV leaking

CVE-2023-39144 disclosure: cleartext password exposure in Element55 Maketime appliance admin pages, enabling privilege escalation via…

Samsung Printer SCX-6X55X Improper Access Control

Exploit for CVE-2023-33477, an unauthorized configuration file download vulnerability in Harmonic NSG 9000-6G modulator, allowing remote attackers to…

Chevereto information disclosure <= 3.13.5 Core

Checks for exposed Redis servers

Best Student Management System v1.0 - Incorrect Access Control - Directory Listing

It is possible to view the MD5 hash of the admin password and other attributes without authentication, even after initial setup and password change.…

Proof-of-concept exploit for CVE-2020-25747 demonstrating unauthenticated remote access to RTSP and ONVIF services on Rubetek RV-3406/3409/3411…

Host PHP Info <= 1.0.4 - Missing Authorization to Unauthenticated Sensitive Information Disclosure

Proof-of-concept exploit for CVE-2024-23733: Incorrect Access Control in Software AG webMethods Integration Server 10.15.0 allowing remote attackers…

Repository for CVE-2023-4800 vulnerability.

Proof-of-concept exploit for CVE-2024-1302 demonstrating unauthenticated log file download in Badgermeter moni:tool, exposing sensitive information…

Event monster <= 1.4.3 - Information Exposure Via Visitors List Export