Exploits from Github
557 subscribers
1 photo
649 files
3.59K links
Download Telegram
CVE-2023-40931

A SQL injection vulnerability in Nagios XI from version 5.11.0 up to and including 5.11.1 allows authenticated attackers to execute arbitrary SQL commands via the ID parameter in the POST request to /nagiosxi/admin/banner_message-ajaxhelper.php

Github link:
https://github.com/G4sp4rCS/CVE-2023-40931-POC
CVE-2018-14714

System command injection in appGet.cgi on ASUS RT-AC3200 version 3.0.0.4.382.50010 allows attackers to execute system commands via the "load_script" URL parameter.

Github link:
https://github.com/ediop3SquadALT/TimeInjector