Yesith Alvarez

6 exploits Active since May 2022
EIP-2026-110635 EXPLOITDB python WORKING POC
PHP < 8.3.8 - Remote Code Execution (Unauthenticated) (Windows)
CVE-2025-27218 EXPLOITDB MEDIUM python WORKING POC
Sitecore Experience Manager (XM)/Experience Platform (XP) 10.4 - Insecure Deserialization
Sitecore Experience Manager (XM) and Experience Platform (XP) 10.4 before KB1002844 allow remote code execution through insecure deserialization.
CVSS 5.3
CVE-2025-5777 EXPLOITDB HIGH python WORKING POC
Citrix Netscaler Application Delivery... - Use of Uninitialized Resource
Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
CVSS 7.5
CVE-2022-1388 EXPLOITDB CRITICAL python WORKING POC
F5 BIG-IP iControl RCE via REST Authentication Bypass
On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior to 13.1.5, and all 12.1.x and 11.6.x versions, undisclosed requests may bypass iControl REST authentication. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
CVSS 9.8
CVE-2024-27348 EXPLOITDB CRITICAL python WORKING POC
Apache HugeGraph-Server - Remote Command Execution
RCE-Remote Command Execution vulnerability in Apache HugeGraph-Server.This issue affects Apache HugeGraph-Server: from 1.0.0 before 1.3.0 in Java8 & Java11 Users are recommended to upgrade to version 1.3.0 with Java11 & enable the Auth system, which fixes the issue.
CVSS 9.8
EIP-2026-101583 EXPLOITDB python WORKING POC
Check Point Security Gateway - Information Disclosure (Unauthenticated)