Horizon3.ai Attack Team
33 exploits
Active since May 2022
Fortinet Fortiproxy < 7.0.7 - Authentication Bypass
Fortinet FortiNAC keyUpload.jsp arbitrary file write
F5 BIG-IP iControl RCE via REST Authentication Bypass
VMware Identity Manager Workspace ONE Access and vRealize Automation - Authentication Bypass
ManageEngine ADSelfService Plus Unauthenticated SAML RCE
Fortra GoAnywhere MFT Unauthenticated Remote Code Execution
VMware Aria Operations for Logs - RCE
PaperCut MF and NG 8.0-20.1.7 - Unauthenticated Remote Code Execution via SetupCompleted
Fortinet Forticlient Endpoint Management Server - SQL Injection
Palo Alto Networks Expedition 1.2.0-1.2.95 - Authenticated OS Command Injection
Ivanti Sentry MICSLogService Auth Bypass resulting in RCE (CVE-2023-38035)
Fortinet FortiSIEM - OS Command Injection
FortiSIEM 6.7.0-6.7.10, 7.0.0-7.0.4, 7.1.0-7.1.8, 7.3.0-7.3.4, 7.4.0 - OS Command Injection via TCP Requests
Palo Alto Networks Expedition 1.2.0-1.2.95 - Unauthenticated SQL Injection and Arbitrary File Write
FortiSIEM 6.6.0-6.6.2 - OS Command Injection via Crafted API Requests
Ivanti EPM RecordGoodApp SQLi RCE
Ivanti Endpoint Manager < 2022 - Privilege Escalation or Remote Code Execution
Ivanti Cloud Services Appliance <4.6.518 - Command Injection
OpenEdge < 11.7.19 - Authentication Bypass via Credential Handling Failure
Ivanti Endpoint Manager < 2022 - Unauthenticated Absolute Path Traversal
Enhancesoft osTicket 1.17.0-1.17.6 and 1.18.0-1.18.2 - Unauthenticated Arbitrary File Read via Ticket PDF Export
SolarWinds Web Help Desk - Hardcoded Credential
N-able N-Central Authentication Bypass and XXE Scanner
N-central <2025.4 - Info Disclosure
2 stars
FortiSIEM 6.6.0-6.6.2 - OS Command Injection via Crafted API Requests
CVSS 10.0