
CVE-2025-45620
Disclosure of client-side authentication bypass in AVer camera web interface exposing unencrypted credentials via network traffic monitoring.

Disclosure of client-side authentication bypass in AVer camera web interface exposing unencrypted credentials via network traffic monitoring.

REMOTE CODE EXECUTION

Denial of Service through CSRF

CSRF attack leads to Reset ONU to Factory Default

CSRF attack leads to "Enable or Disable Ports" and to "Change port numbers

WiFiRanger 7.0.8rc3 Incorrect Access Control - Privilege Escalation

A login bypass(CVE-2019-18371) and a command injection vulnerability(CVE-2019-18370) in Xiaomi Router R3G up to version 2.28.23.


CVE-2019-6487. A command injection vulnerability in TP-Link WDR5620 Series up to verion 3.

Netis router RCE exploit ( CVE-2019-19356)

Exploiting TP-Link Archer CR-700 Router. (Responsibly Disclosed to TP-Link)

nuclei templates CVE RCE CNVD IoT

海康威视RCE漏洞 批量检测和利用工具

PoC of CVE-2021-35296 - PTCL Modem HG150-Ub

Cross-Site Request Forgery (CSRF) vulnerability in the password change function, which allows remote attackers to change the admin password without…

Public disclose of several stored XSS vulnerabilities in the Sensaphone WEB600 (CVE-2024-55040)

Improper Access Control on D-Link DIR-605L router

In Paradox Security System IPR512 Web console login form page, attacker can input JavaScript string, such as "</script>" that will overwrite…