PoC Archive PoC Archive

tag

Cwe-284

Twonky Server 8.5.2 Unauthenticated `/nmc/rpc/` Auth Bypass & Admin Credential Log Leak (CVE-2025-13315) EPSS 33%
CVE-2025-13315 network Unpatched
CVE-2025-13315networkCRITICAL 9.8Unpatched2026-07-06Frontend Admin by DynamiApps — Unauthenticated Administrator Account Creation (CVE-2025-13342)
CVE-2025-13342 web Patched
CVE-2025-13342webCRITICAL 9.8Patched2026-07-06FiberHome HG6145F1 Predictable Default Wi-Fi PSK Derived from Broadcast SSID (CVE-2025-63353)
CVE-2025-63353 / GHSA-cg2x-c25f-6327 network Patched
CVE-2025-63353 / GHSA-cg2x-c25f-6327networkCRITICAL 9.8Patched2026-07-06Veno File Manager Incorrect Access Control — Application Log Extraction (CVE-2026-37067)
CVE-2026-37067 web Unverified
CVE-2026-37067webMEDIUMUnverified2026-07-05Linux Kernel PPP Unprivileged User-Namespace Precondition Probe — CVE-2026-53075
CVE-2026-53075 binary Patched
CVE-2026-53075binaryINFOPatched2026-07-05