IoTSec Pulse
Home
Resources
Submit
Sign In
Home
Resources
Explore Awesome IoT Security Insights
One-stop hub for IoT security insights, analyses, tools and more.
Search Help
Query Filter Values
Built with
Dirstarter
© 2025 IoTSec Pulse. All rights reserved.
Privacy Policy
Terms of Service
Sitemap
Book
From Day Zero to Zero Day: A Hands-On Guide to Vulnerability Research
View on Amazon
IoTSec Pulse – Awesome IoT Security Insights
2025-11-30
CVE-2024-50630
CVE-2024-50629
CVE-2024-50631
Pwn2Own
poc
authentication bypass
CRLF injection
sql injection
Writing Sync, Popping Cron: DEVCORE's Synology BeeStation RCE & A Novel SQLite Injection RCE Technique (CVE-2024-50629~50631)
Synology
NAS
2025-11-30
2025-11-19
CVE-2025-64446
authentication bypass
poc
Fortinet FortiWeb Authentication Bypass - CVE-2025-64446
Fortinet
WAF
2025-11-19
2025-11-18
CVE-2025-58034
poc
CVE-2025-58034
Fortinet
WAF
2025-11-18
2025-11-17
CVE-2025-9316
CVE-2025-11700
authentication bypass
poc
N-able N-central: From N-days to 0-days
N-able
Application
2025-11-17
2025-11-14
CVE-2025-64446
authentication bypass
poc
When The Impersonation Function Gets Used To Impersonate Users (Fortinet FortiWeb Auth. Bypass CVE-2025-64446)
Fortinet
WAF
2025-11-14
2025-11-10
poc
No Leak, No Problem - Bypassing ASLR with a ROP Chain to Gain RCE
INSTAR
Camera
2025-11-10
2025-10-28
poc
Ubuntu
LPE via Refcount Imbalance in the AF_UNIX of Ubuntu's Kernel
Other
Kernel
2025-10-28
2025-10-21
CVE-2025-9133
poc
CVE-2025-9133: Configuration Exposure via Authorization Bypass
Zyxel Networks
Firewall
2025-10-21
CVE-2025-8078
poc
CVE-2025-8078: Remote Code Execution via CLI Command Injection
Zyxel Networks
Firewall
2025-10-21
2025-10-16
CVE-2025-11001
poc
Diffing 7-Zip for CVE-2025-11001
Other
Application
2025-10-16
CVE-2025-9242
poc
IKE
yIKEs - WatchGuard Fireware OS IKEv2 Out-Of-Bounds Write (CVE-2025-9242)
WatchGuard
Firewall
2025-10-16
2025-09-25
CVE-2025-20333
CVE-2025-20362
poc
authentication bypass
CVE-2025-20362
Cisco
Firewall
2025-09-25
2025-09-24
CVE-2025-23298
deserialization
poc
CVE-2025-23298: Getting Remote Code Execution in NVIDIA Merlin
NVIDIA
Other
2025-09-24
2025-09-20
BLE
poc
UniPwn: Unitree Robot BLE Service Command Injection Analysis
Unitree
Robot
2025-09-20
2025-09-10
CVE-2025-57819
poc
sql injection
You Already Have Our Personal Data, Take Our Phone Calls Too (FreePBX CVE-2025-57819)
Sangoma
Application
2025-09-10
2025-08-27
CVE-2025-54309
race condition
poc
CrushFTP
The One Where We Just Steal the Vulnerabilities: CrushFTP CVE-2025-54309
Other
File Server
2025-08-27
2025-08-15
CVE-2025-25256
poc
Should Security Solutions Be Secure? Maybe We're All Wrong - Fortinet FortiSIEM Pre-Auth Command Injection (CVE-2025-25256)
Fortinet
Application
2025-08-15
2025-08-11
Pwn2Own
poc
Extraction of Synology encrypted archives - Pwn2Own Ireland 2024
Synology
NAS
2025-08-11
2025-07-11
CVE-2025-25257
poc
Pre-Auth SQL Injection to RCE - Fortinet FortiWeb Fabric Connector (CVE-2025-25257)
Fortinet
WAF
2025-07-11
2025-07-10
CVE-2025-25257
poc
FortiWeb Pre-Auth RCE (CVE-2025-25257)
Fortinet
WAF
2025-07-10