CVE---EXPLOIT...
This module performs SSTI achieving RCE in webpages containing the Contact Form Wordpress plugin by Supsystic in versions 1.7.36 and before. Module...
CVE-2025-55182 Lab — React Server Components RCE Educational lab demonstrating CVE-2025-55182 — a critical CVSS 10.0 Remote Code Execution vulnerab...
No description provided...
CVE-2026-20182 Cisco Catalyst SD-WAN Peering Authentication Bypass CVE-2026-20182 — Cisco Catalyst SD-WAN Peering Authentication Bypass Assessment ...
This Metasploit module is for WordPress Supsystic Contact Form plugin versions 1.7.36 and below. The plugin suffers from a server-side template inj...
The ZTE ZXHN H168N V3.5 firmware exposes quick-setup wizard endpoints that return PPPoE credentials ADUsername, VDUsername and the WLAN KeyPassphra...
Unauthenticated requests to the root path of ZTE ZXHN H188A V6 firmware can reach pre-login wizard handlers and disclose WLAN PSKs, SSIDs, and PPPo...
A single unauthenticated HTTP GET to /getpage.lua?pid=1000ÐCheat=1 on ZTE H298A or H108N routers returns the live administrator password OBJUSER...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.