PoC Archive PoC Archive

tag

Reverse-Shell

Cisco IMC Argument Injection to Root RCE (CVE-2026-20200)
CVE-2026-20200 / NSIDE-SA-2026-003 network Patched
CVE-2026-20200 / NSIDE-SA-2026-003networkCRITICAL 9.9Patched2026-08-16GitLab Unauthenticated RCE via Workhorse Pre-Auth Upload into ExifTool DjVu Injection (CVE-2021-22205) KEV RW EPSS 100%
CVE-2021-22205 (chains CVE-2021-22204 in ExifTool) web Patched
CVE-2021-22205webCRITICAL 10Patched2026-08-09XWiki SolrSearch Macro Unauthenticated Groovy RCE (CVE-2025-24893) KEV EPSS 100%
CVE-2025-24893 web Patched
CVE-2025-24893webCRITICAL 9.8Patched2026-07-06FreePBX Unauthenticated SQL Injection to RCE (CVE-2025-57819) KEV EPSS 88%
CVE-2025-57819 web Patched
CVE-2025-57819webCRITICAL 9.8Patched2026-07-06Crafty Controller Webhook Jinja2 Server-Side Template Injection RCE (CVE-2025-14700)
CVE-2025-14700 web Unverified
CVE-2025-14700webCRITICAL 9.9Unverified2026-07-06Windows ikeext.dll IKEv2 Double-Free Remote Kernel Exploit — CVE-2026-33824 KEV EPSS 73%
CVE-2026-33824 network Patched
CVE-2026-33824networkCRITICALPatched2026-07-05Samba spoolss Print Job Command Injection RCE (CVE-2026-4480) EPSS 14%
CVE-2026-4480 network Patched
CVE-2026-4480networkCRITICALPatched2026-07-05MIPS-Based Managed Switch Firmware Pre-Auth Kernel RCE — CVE-2026-1668
CVE-2026-1668 binary Unverified
CVE-2026-1668binaryCRITICALUnverified2026-07-05MindsDB — Handler Path Traversal to Remote Code Execution (CVE-2026-27483) EPSS 11%
CVE-2026-27483 web Patched
CVE-2026-27483webCRITICALPatched2026-07-05MCPJam Inspector Unauthenticated Command Injection RCE (CVE-2026-23744) EPSS 45%
CVE-2026-23744 web Patched
CVE-2026-23744webCRITICALPatched2026-07-05MCPJam Inspector / Arcane MCP Connect Command Injection RCE via Host-Header Vhost Routing (CVE-2026-23520)
CVE-2026-23520 web Patched
CVE-2026-23520webCRITICALPatched2026-07-05Math.js Expression Parser Sandbox Bypass RCE (CVE-2026-40897)
CVE-2026-40897 web Patched
CVE-2026-40897webCRITICALPatched2026-07-05Langflow Custom Component Remote Code Execution — CVE-2026-33017 KEV EPSS 96%
CVE-2026-33017 web Patched
CVE-2026-33017webCRITICALPatched2026-07-05Krayin CRM — TinyMCE Upload Unrestricted File Upload to RCE (CVE-2026-38526)
CVE-2026-38526 web Unverified
CVE-2026-38526webCRITICALUnverified2026-07-05ExifTool Metadata Field Command Injection (macOS) — CVE-2026-3102
CVE-2026-3102 binary Patched
CVE-2026-3102binaryHIGHPatched2026-07-05Everest Forms Pro Unauthenticated PHP Code Injection via Calculation Addon (CVE-2026-3300) EPSS 39%
CVE-2026-3300 web Unverified
CVE-2026-3300webCRITICALUnverified2026-07-05Dolibarr ERP/CRM OS Command Injection via MAIN_ODT_AS_PDF (CVE-2026-23500)
CVE-2026-23500 / GHSA-w5j3-8fcr-h87w web Patched
CVE-2026-23500 / GHSA-w5j3-8fcr-h87wwebCRITICALPatched2026-07-05Budibase Authentication Bypass to Plugin-Upload Reverse Shell — CVE-2026-31816 EPSS 15%
CVE-2026-31816 web Unverified
CVE-2026-31816webCRITICALUnverified2026-07-05IngressNightmare - Kubernetes Ingress-NGINX Unauthenticated RCE EPSS 100%
CVE-2025-1974 (primary); also CVE-2025-1097, CVE-2025-1098, CVE-2025-24514 cloud Unverified
CVE-2025-1974cloudCRITICAL 9.8Unverified2026-05-17Erlang/OTP SSH Pre-Auth RCE - CVE-2025-32433 KEV EPSS 99%
CVE-2025-32433 network Patched
CVE-2025-32433networkCRITICAL 10Patched2026-05-17