MAL-004: Command Injection Bypass for CVE-2020-12641 in Roundcube Webmail
-
Updated
Apr 13, 2024
MAL-004: Command Injection Bypass for CVE-2020-12641 in Roundcube Webmail
Case Study: SSHtranger Things (CVE-2019-6111, CVE-2019-6110) in Cisco SD-WAN
Mass Exploiter for CVE-2026-49049
CVE-2019-12409: RCE Vulnerability Due to Bad Defalut Config in Apache Solr
MAL-012: Reflected Cross-Site Scripting in Admin Console leading to Remote Code Execution in Payara Server
Aimy Captcha-Less Form Guard Joomla Component PHP Object Injection RCE. clfgd XOR keystream recovery + unserialize(). CVSS 10.0 | CWE-502 | aimy_captcha-less_form_guard < 20.1
CVE-2021-46362: FreeMarker Server-Side Template Injection in Magnolia CMS
CVE-2026-58138 — Conductor (3.21.21..<3.30.2) unauthenticated RCE via INLINE GraalVM evaluator (HostAccess.ALL). Lab + PoC, verified e2e (root).
CVE-2020-13965: Cross-Site Scripting via Malicious XML Attachment in Roundcube Webmail
Magento 2 Unauthenticated RCE Exploit – Uploads a PHP webshell via GraphQL product lookup + guest cart custom options. Multi‑threaded, auto‑detects SKU, and saves live shell URLs to up.txt. For authorized security testing only.
CVE-2026-56121 — Feast <0.63.0 unauthenticated RCE via gRPC registry dill.loads of OnDemandFeatureView UDF (pre-auth). Lab + PoC, verified e2e.
CVE-2026-82286 — gpt-crawler <=1.5.1 unauthenticated arbitrary file write via outputFileName (POST /crawl). PoC + self-contained Docker lab. CVSS 8.6, CWE-22.
WSO2-2021-1261: Multiple Cross-Site Scripting in WSO2 ESB
CVE-2026-5118 – Python2 mass exploit for Divi WordPress plugin Unauthenticated administrator registration via admin-ajax.php. Multi‑threaded scanner with nonce extraction.
Unauthenticated SQL injection to RCE exploit for ZoneMinder 1.29/1.30 (CVE-2016-10204, EDB-41239). Single-command SQLi to webshell to reverse shell PoC in Python.
CVE-2020-12641: Command Injection via “_im_convert_path” Parameter in Roundcube Webmail
CVE-2019-12401: XML Bomb in Apache Solr
Mass vulnerability scanner for CVE-2026-49049 – Unauthenticated Remote Code Execution in Joomla Helix3 plugin. Multi‑threaded, detects both executed and raw PHP payloads.
Hands-on exploit lab for CVE-2024-28000 — unauthenticated privilege escalation in LiteSpeed Cache (WordPress plugin, <=6.3.0.1). Spins up a vulnerable environment with Docker and includes a Go-based brute-forcer that cracks the weak mt_rand hash to create an administrator account.
CVE-2019-14223: Open Redirect in Alfresco Share
To associate your repository with the unauthenticated topic, visit your repo's landing page and select "manage topics."