
ipfire-2-25-auth-rce
ipfire 2.25 authenticated remote code execution

ipfire 2.25 authenticated remote code execution

CVE-2021-46075 - A Privilege Escalation vulnerability exists in Sourcecodester Vehicle Service Management System 1.0. Staff account users can access…

DaemonSet с реализацией временной меры для митигации уязвимости Copy Fail (CVE-2026-31431)

HackTheBox Facts machine writeup — CVE-2025-2304, MinIO S3 enumeration, SSH key cracking, and facter privilege escalation.

HackTheBox — Facts (Easy/Linux) | CVE-2025-2304 + AWS S3 + SSH Key + Facter PrivEsc

Automates exploitation of a critical unauthenticated privilege escalation flaw in the WordPress Opal Estate Pro plugin by crafting a registration…

The MasterStudy LMS WordPress plugin before 2.7.6 does to validate some parameters given when registering a new account, allowing unauthenticated…

CVE-2026-8181 | Burst Statistics 3.4.0 - 3.4.1.1 - Authentication Bypass to Admin Account Takeover

This exploit is based on CVE-2021-33393 and was built upon the original exploit by Mücahit Saratar, extending it to achieve a reverse shell with root…

HashiCorp Consul exploit with python. (CVE-2021-41805)

CVE-2023-28121 - WooCommerce Payments < 5.6.2 - Unauthenticated Privilege Escalation [ Mass Add Admin User ]

Proof-of-concept exploit demonstrating UMCI bypass in Internet Explorer using JScript and ActiveX to execute arbitrary binaries, targeting Windows…

CVE-2021-21220 Exploitation infrastructure

An unauthenticated privilege escalation problem tracked as CVE-2024-32444 (CVSS score: 9.8).

CVE-2026-3584

patch-manager

CVE-2025-2304 POC - Camaleon CMS Privilege Escalation

CVE-2023-51518: Preauthenticated Java Deserialization via JMX in Apache James