Exploit Search

PoC Search Engine

AI Enriched

Search specific CVE exploits enriched with AI vulnerability analysis.

Found 31907 Vulnerabilities with Exploits

MLflow AI Gateway SSRF via unvalidated api_base

Severity HIGH
7.1

AI Intelligence Analysis

Target Stack MLflow / MLflow
Impact Vector SSRF, Info Disclosure
Authentication PRE-AUTH

Authenticated RCE and privilege escalation in Cisco IMC web interface

Severity HIGH
8.8

AI Intelligence Analysis

Target Stack Cisco / Cisco IMC
Impact Vector RCE
Authentication Authenticated

Hardcoded Credentials in Zosi C519M

Severity HIGH
7.5

AI Intelligence Analysis

Target Stack Zosi / C519M
=4.2.8.823C01450BA
Impact Vector Unauthorized Access
Authentication PRE-AUTH

Verified Exploits (1)

Azure AD OAuth Bypass in FAB Auth Manager

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack Apache / apache-airflow-providers-fab
<3.7.3
Impact Vector Authentication Bypass
Authentication Authenticated

Reflected Cross-Site Scripting (XSS) in O2OA Forum posting

Severity MEDIUM
6.1

AI Intelligence Analysis

Target Stack O2OA / O2OA
=10
Impact Vector XSS
Authentication Authenticated

Message modification/deletion bypass in Open WebUI

Severity MEDIUM
5.4

AI Intelligence Analysis

Target Stack Open WebUI / Open WebUI
>=0.5.0 <0.11.0
Impact Vector Data Manipulation, Data Deletion
Authentication PRE-AUTH

Verified Exploits (1)

AIOHTTP Server Request Smuggling via WebSocket Upgrade

Severity MEDIUM
6.3

AI Intelligence Analysis

Target Stack AIOHTTP / AIOHTTP
<3.14.2
Impact Vector Request Smuggling
Authentication PRE-AUTH

PHP Object Injection Leading to RCE

Severity HIGH
7.5

AI Intelligence Analysis

Target Stack Kirki / Kirki
<6.0.13
Impact Vector RCE
Authentication Authenticated

RCE via SQL Injection in pgAdmin 4 Import/Export Data tool

Severity CRITICAL
9.4

AI Intelligence Analysis

Target Stack pgAdmin / pgAdmin 4
<9.18
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

OpenMediaVault openmediavault-md Plugin OS Command Injection

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack OpenMediaVault / openmediavault-md plugin of OpenMediaVault
=8.0.4-1
Impact Vector RCE
Authentication Authenticated

PHP SQL Injection via Backslash Escaping

Severity HIGH
8.1

AI Intelligence Analysis

Target Stack PHP / PHP
>=8.2 <8.2.33 >=8.3 <8.3.33 >=8.4 <8.4.24 >=8.5 <8.5.9
Impact Vector SQLi
Authentication PRE-AUTH

Apache Kyuubi Path Traversal Vulnerability

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack Apache / Kyuubi
>=1.7.0 <=1.11.1
Impact Vector Path Traversal
Authentication PRE-AUTH

Arbitrary File Read and Potential RCE in Active Storage

Severity CRITICAL
9.5

AI Intelligence Analysis

Target Stack Action Pack / Active Storage
<7.2.3.2 <8.0.5.1 <8.1.3.1
Impact Vector Arbitrary File Read/RCE
Authentication Authenticated

Realtyna Organic IDX Arbitrary File Upload RCE

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack Realtyna / Realtyna Organic IDX plugin + WPL Real Estate plugin
<=5.2.0
Impact Vector RCE
Authentication Authenticated

ArcadeDB: RCE via JavaScript triggers

Severity CRITICAL
9.3

AI Intelligence Analysis

Target Stack ArcadeDB / ArcadeDB
<26.7.2
Impact Vector RCE
Authentication Authenticated

Heap buffer overflow in rsyslog TCP syslog reception modules

Severity HIGH
8.1

AI Intelligence Analysis

Target Stack rsyslog / rsyslog
Impact Vector Denial of Service
Authentication PRE-AUTH

Remote Code Execution via insecure upload validation

Severity CRITICAL
9.8

AI Intelligence Analysis

Target Stack CodeIgniter / CodeIgniter
<4.7.4
Impact Vector RCE
Authentication Authenticated

SQL injection in cPanel via improper SQL mode preservation

Severity CRITICAL
9.4

AI Intelligence Analysis

Target Stack cPanel / cPanel
Impact Vector SQLi
Authentication Authenticated

Buffer overflow in httpd daemon leading to RCE

Severity HIGH
8.8

AI Intelligence Analysis

Target Stack TP-Link / TL-WR841N
=3.16.9 =TL-WR841N(EU)_V12_160624 =TL-WR841N(EU)_V11_160325 =TL-WR841N_V11_150616 =TL-WR841N_V10_150310
Impact Vector RCE
Authentication PRE-AUTH

Verified Exploits (1)

ClearOS: Log Viewer OS Command Injection

Severity HIGH
8.6

AI Intelligence Analysis

Target Stack ClearOS / ClearOS
=7.9
Impact Vector OS Command Injection, Privilege Escalation
Authentication Authenticated