
CVE-2024-30973
POC VIDEO - https://youtu.be/hNzmkJj-ImM?si=NF0yoSL578rNy7wN

POC VIDEO - https://youtu.be/hNzmkJj-ImM?si=NF0yoSL578rNy7wN

An issue in MiniTool Partition Wizard ShadowMaker v.12.7 allows an attacker to execute arbitrary code and gain privileges via the…

Exploit for CVE-2023-33477, an unauthorized configuration file download vulnerability in Harmonic NSG 9000-6G modulator, allowing remote attackers to…

Samsung Printer SCX-6X55X Improper Access Control

Chevereto information disclosure <= 3.13.5 Core

Clario through 2024-04-11 for Windows Desktop has weak permissions for %PROGRAMDATA%\Clario and tries to load DLLs from there as SYSTEM.

Threat-Informed Detection & Mitigation Package for MOVEit Transfer Vulnerability

Checks for exposed Redis servers

Best Student Management System v1.0 - Incorrect Access Control - Directory Listing

Host PHP Info <= 1.0.4 - Missing Authorization to Unauthenticated Sensitive Information Disclosure

Exploit for CVE-2024-4231, an improper access control vulnerability in Digisol DG-GR1321 routers, allowing unauthorized access to sensitive…

Zita Site Builder <= 1.0.2 - Missing Authorization to Arbitrary Plugin Installation

Proof-of-concept exploit for CVE-2024-1302 demonstrating unauthenticated log file download in Badgermeter moni:tool, exposing sensitive information…

Swift Performance Lite <= 2.3.6.14 - Missing Authorization to Unauthenticated Settings Export

Proof-of-concept demonstrating information leakage in OneinStack deployment tool via exposed endpoints (phpinfo.php, xprober.php, ocp.php) leading to…

Repository dedicated to CVE-2024-23774, an unquoted Windows service path vulnerability, providing information and potential exploitation details.

Insecure Folder permission that lead to privilege escalation

Proof-of-concept exploit for CVE-2024-23733: Incorrect Access Control in Software AG webMethods Integration Server 10.15.0 allowing remote attackers…