
CVE-2022-44136-poc
Zenar CMS 9.3 suffers from an unrestricted file upload vulnerability in its file management module, allowing authenticated attackers (with…

Zenar CMS 9.3 suffers from an unrestricted file upload vulnerability in its file management module, allowing authenticated attackers (with…

This script exploits CVE-2025-62369 in Xibo CMS to execute a reverse shell command.

This script exploits the file upload feature in Pluck CMS v4.7.18 to upload a malicious PHP file, enabling remote access via a reverse shell. Once…

The first proof of concept of the Contao CMS RCE

CVE-2018-19422 Authenticated Remote Code Execution

CVE-2023-50564 - An arbitrary file upload vulnerability in the component /inc/modules_install.php of Pluck-CMS v4.7.18 allows attackers to execute…

FuelCMS 1.4.1 Command Injection/Remote Code Execution.

CVE-2025-15495 - Arbitrary File Upload Leading to Remote Code Execution (RCE)

monstra_cms-3.0.4-上传getshell CVE-2018-17418

This repository has details on a vulnerability found with the "vCard" plugin for CraftCMS 3.