PoC Archive PoC Archive

tag

Router

D-Link DIR-820L `get_set.ccp` LAN Configuration OS Command Injection (CVE-2022-26258) KEV EPSS 80%
CVE-2022-26258 network Unverified
CVE-2022-26258networkCRITICAL 9.8Unverified2026-07-11XSpeeder SXZOS Pre-Auth eval() Remote Code Execution (CVE-2025-54322) EPSS 15%
CVE-2025-54322 network Unpatched
CVE-2025-54322networkCRITICAL 10Unpatched2026-07-06Tenda AC9 `AdvSetMacMtuWan` Stack-Based Buffer Overflow (CVE-2025-29384)
CVE-2025-29384 network Unpatched
CVE-2025-29384networkCRITICAL 9.8Unpatched2026-07-06D-Link AX1500 SetDeviceSettings `DeviceName` OS Command Injection (CVE-2025-60854)
CVE-2025-60854 network Patched
CVE-2025-60854networkCRITICAL 9.8Patched2026-07-06Zyxel VMG3625-T50B Authenticated Command Injection to Root SSH Access (CVE-2026-1459)
CVE-2026-1459 network Unverified
CVE-2026-1459networkHIGHUnverified2026-07-05ZTE ZXHN H298A / H108N Router Unauthenticated Credential Disclosure (CVE-2026-34474) EPSS 25%
CVE-2026-34474 network Unverified
CVE-2026-34474networkHIGHUnverified2026-07-05ZTE ZXHN H188A Unauthenticated Wizard Handler Credential Disclosure / Auth Bypass (CVE-2026-34472)
CVE-2026-34472 network Unverified
CVE-2026-34472networkCRITICALUnverified2026-07-05ZTE Router Unauthenticated Oversized-POST Denial of Service (CVE-2026-34473)
CVE-2026-34473 network Unverified
CVE-2026-34473networkHIGHUnverified2026-07-05TP-Link DHCP Option 66 Unauthenticated RCE — CVE-2026-11834
CVE-2026-11834 network Unverified
CVE-2026-11834networkCRITICALUnverified2026-07-05TP-Link Archer C64 Web UI Rate-Limit Bypass via Residual Debug SSH Service (CVE-2026-8697)
CVE-2026-8697 network Unverified
CVE-2026-8697networkCRITICAL 9.3Unverified2026-07-05Tenda HG7/HG9/HG10 Router Stack-Based Buffer Overflow — CVE-2026-11499
CVE-2026-11499 network Unverified
CVE-2026-11499networkHIGHUnverified2026-07-05MR9600 Router Bluetooth/JNAP Management Interface RCE Injection (CVE-2026-6992)
CVE-2026-6992 network Unverified
CVE-2026-6992networkHIGHUnverified2026-07-05MeiG Smart FORGE_SLT711 GoAhead Unauthenticated OS Command Injection (CVE-2026-36356) EPSS 14%
CVE-2026-36356 network Unverified
CVE-2026-36356networkCRITICALUnverified2026-07-05