
CVE-2018-12633-TPLink-Auth-Bypass
A technical case study and exploitation analysis of the Authentication Bypass vulnerability in TP-Link TL-WR840N firmware (CVE-2018-12633).

A technical case study and exploitation analysis of the Authentication Bypass vulnerability in TP-Link TL-WR840N firmware (CVE-2018-12633).

CVE-2026-63030 (RCE) + CVE-2026-60137 (SQLi)


Vulnerability Case Study: CVE-2026-33829 (Windows Snipping Tool NTLM Coercion)

DifuseHQ Kalmia CMS version 0.2.0 contains an Incorrect Access Control vulnerability in the /kal-api/auth/users API endpoint. Due to insufficient…

Moodle 4.5.0-4.5.2 Unauthenticated REST API User Data Exposure via Stack Trace Args Leak | CVSS 7.5

HackTheBox — Facts (Easy/Linux) | CVE-2025-2304 + AWS S3 + SSH Key + Facter PrivEsc


This is an automated exploitation script for the Hack The Box machine *Titanic*. It extracts Gitea user hashes via LFI, assists in cracking them, and…

Proof of Concept for WatchGuard Authenticated Arbitrary File Read (CVE-2022-31749)

Grafana Unauthorized arbitrary file reading vulnerability

This exploit targets an unauthenticated SQL injection vulnerability in CMS Made Simple <= 2.2.9 (CVE-2019-9053). It uses a time-based blind SQL…

Details about CVE-2018-16987 - Cleartext storage of TA servers' passwords in Squash TM

Element55 Maketime Appliance stores passwords in cleartext within the application.

Ladon Scanner For Python, Large Network Penetration Scanner & Cobalt Strike, vulnerability / exploit / detection /…

Professional JWT security testing toolkit. Analyze, crack, forge, and exploit JSON Web Tokens with 15+ vulnerability checks, 100k secret wordlist,…

Laravel Crypto Killer Mass Scanner (CVE-2024-55555)

SolarView vuln