Chocapikk
106 exploits
Active since Apr 2017
Erlang OTP Pre-Auth RCE Scanner and Exploit
Monsta FTP < 2.11 - Unauthenticated Arbitrary File Upload
WWBN AVideo 12.4-14.2 - Remote Code Execution via systemRootPath Parameter
Juniper Junos OS on SRX Series < 22.4R3 - Unauthenticated Arbitrary File Upload via J-Web
CloudPanel 2.0.0-2.3.0 - Unauthenticated Remote Code Execution via File Manager Cookie
WAGO Compact Controller 100 Firmware 20-22 - Unauthenticated OS Command Injection
Confluence - Remote Code Execution
Zip Path Traversal in Zimbra (mboximport) (CVE-2022-27925)
Adobe Commerce and Magento - XML External Entity Injection to Code Execution
Metabase < 0.46.6.1 and < 1.46.6.1 - Unauthenticated Remote Code Execution
Ivanti Endpoint Manager Mobile < 11.11.0 - Unauthenticated Authentication Bypass
Atlassian Bitbucket Server/Data Center <7.6.17/<7.17.10/<7.21.4/<8....
CWP login.php Unauthenticated RCE
Fortinet FortiNAC keyUpload.jsp arbitrary file write
pfBlockerNG < 2.1.4_26 - Remote Code Execution via HTTP Host Header
WSO2 Arbitrary File Upload to RCE
VMware Workspace ONE Access CVE-2022-22954
FreeSWITCH <1.10.1 - Info Disclosure
n8n 1.65.0-1.120.9 - Unauthenticated Arbitrary File Read via Form-Based Workflow Execution
React Server Components <19.2.0 - RCE
Parks Fiberlink 210 <V2.1.14_X000 - Command Injection
Telesquare SDT-CW3B1 1.1.0 - Command Injection
SolarView Compact 6.00 - Command Injection
Zyxel Firewall SUID Binary Privilege Escalation
KramerAV VIAWare - Privilege Escalation