
CVE-2018-18852
Python proof-of-concept for authenticated remote code execution as root on CERIO routers (CVE-2018-18852), exploiting vendor default credentials.

Python proof-of-concept for authenticated remote code execution as root on CERIO routers (CVE-2018-18852), exploiting vendor default credentials.

Proof-of-concept exploit targeting CVE-2024-5633 in Longse cameras, demonstrating memory read/write via an undocumented CoolView service to bypass…

Proof-of-concept exploit for CVE-2024-29671, a stack buffer overflow in NEXTU FLETA AX1500 router's boa web server, enabling remote code execution…

Proof-of-concept exploit for CVE-2019-9653 demonstrating unauthenticated remote code execution as root on NUUO NVR devices via vulnerable PHP scripts.

TP-Link TL-WR840N EU v5 Remote Code Execution

Final OBJECTIVE:BIOS ROOTKIT AND RSHELL USING BIOS NETWORKING STACK

An implementation of a proof-of-concept for CVE-2018-5767

Proof-of-concept exploit that enables telnet access on Hisilicon DVR/NVR devices for security research and penetration testing.

Python exploit for CVE-2025-57174 enabling unauthenticated remote command execution on Siklu EtherHaul series devices (firmware 7.4.0–10.7.3).

Exploit for command injection vulnerability found in uhttpd binary from TP-Link Tapo c200 IP camera

PoC exploit for CVE-2025-5688: remote out-of-bounds write in FreeRTOS-Plus-TCP via crafted LLMNR/mDNS queries, causing crash or potential RCE on…

A Python script for generating exploits targeting CVE-2022-4510 RCE Binwalk. It supports SSH, command execution, and reverse shell options. Exploits…

Remote Command Execution as SYSTEM on Windows IoT Core (releases available for Python2.7 & Python3)

Proof of concept for the command injection vulnerability affecting the ZTE MF286R router, including an RCE exploit.

🔐 "PWNTAPO: Unveiling Command Injection in TP-Link Tapo C200 Cameras (<= v1.1.16 Build 211209)" 🔓

Python exploit for CVE-2024-3273 enabling remote command execution on D-Link NAS devices, supporting single or multiple hosts with concurrent threads…

CVE-2026-13768 advisory detailing critical Azure IoT Hub iothubowner credential abuse enabling fleet-wide device enumeration, remote code execution…

TP-Link Tapo c200 ver <1.1.15 - Remote Code Execution (RCE)