
CVE-2025-69985
CVE-2025-69985: FUXA ≤1.2.8 Auth Bypass + RCE via /api/runscript

CVE-2025-69985: FUXA ≤1.2.8 Auth Bypass + RCE via /api/runscript


Analyzing and Reproducing the Command Injection Vulnerability (CVE-2023-0861) in NetModule Routers

Proof of Concept (PoC) for CVE: 2017-16744 and 2017-16748

An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

Exploit for Authenticated Remote Code Execution on OpenPLC v3 Webserver

Simple script to exploit open redirection vulnerability in Rockwell ControlLogix 1756-ENBT/A

OpenPLC Runtime suffers from a persistent denial of service (DoS) vulnerability in the /upload-program-action endpoint.

To reproduce CVE-2021-31630

SpiderControl SCADA Web Server File Upload Vulnerability

Authenticated users can upload arbitrary files (e.g. .html, .svg) as profile images in OpenPLC Runtime. These files are publicly accessible without…

POC Exploit for CVE-2021-31630 written in Python3 and using C reverse shell with non-blocking mode

OpenPLC 3 WebServer Authenticated Remote Code Execution.

