Exploit catalog results

Showing 8 PoCs on this page

Metasploit

Ivanti EPM Agent Portal Command Execution

Metasploit exploitby James Horseman, plus 1 additional contributorAdded to Metasploit 2024-10-17
Not analyzedCVE-2023-283241 file

exploit_windows/misc/ivanti_agent_portal_cmdexec · Ruby

Metasploit

Palo Alto Expedition Remote Code Execution (CVE-2024-5910 and CVE-2024-9464)

Metasploit exploitby Brian Hysell, plus 2 additional contributorsAdded to Metasploit 2024-10-11
Not analyzedCVE-2024-24809CVE-2024-5910CVE-2024-94641 file

exploit_linux/http/paloalto_expedition_rce · Ruby

Metasploit

SolarWinds Web Help Desk Backdoor (CVE-2024-28987)

Metasploit auxiliary PoCby Michael HeinzlAdded to Metasploit 2024-09-25
Not analyzedCVE-2024-289871 file

auxiliary_gather/solarwinds_webhelpdesk_backdoor · Ruby

Metasploit

FortiNet FortiClient Endpoint Management Server FCTID SQLi to RCE

Metasploit exploitby James Horseman, plus 2 additional contributorsAdded to Metasploit 2024-04-12
Not analyzedCVE-2023-487881 file

exploit_windows/http/forticlient_ems_fctid_sqli · Ruby

Metasploit

Fortra GoAnywhere MFT Unauthenticated Remote Code Execution

Metasploit exploitby James Horseman, plus 1 additional contributorAdded to Metasploit 2024-01-29
Not analyzedCVE-2024-02041 file

exploit_multi/http/fortra_goanywhere_mft_rce_cve_2024_0204 · Ruby

Metasploit

Lexmark Device Embedded Web Server RCE

Metasploit exploitby James Horseman, plus 1 additional contributorAdded to Metasploit 2023-08-31
Not analyzedCVE-2023-26067CVE-2023-260681 file

exploit_linux/http/lexmark_faxtrace_settings · Ruby

Metasploit

Ivanti Sentry MICSLogService Auth Bypass resulting in RCE (CVE-2023-38035)

Metasploit exploitby James Horseman, plus 1 additional contributorAdded to Metasploit 2023-08-29
Not analyzedCVE-2023-380351 file

exploit_linux/http/ivanti_sentry_misc_log_service · Ruby

Metasploit

Fortinet FortiNAC keyUpload.jsp arbitrary file write

Metasploit exploitby Gwendal Guégniaud, plus 1 additional contributorAdded to Metasploit 2023-03-08
Not analyzedCVE-2022-399521 file

exploit_linux/http/fortinac_keyupload_file_write · Ruby