References https://github.com/chaitin/xray/blob/master/pocs/bt742-pma-unauthorized-access.yml https://cve.imfht.com/poc_detail/cd040bec8557aaa9c8748ed6796a397a58c561b4 https://github.com/zhibx/fscan-Intranet https://www.ddosi.org/afrog/ https://gitextract.com/qi4L/qscan https://www.buaq.net/go-30348.html
Related VulnerabilitiesPoCCVE-2026-59177: ESPHome Device Builder <1.0.10 - Unauthenticated Dashboard AccessPoCCVE-2026-81578: PaperCut NG/MF <=26.0.4 - Unauthenticated ConfigEditor Access via Tapestry Complex-DirectPoCCVE-2026-82329: JFrog Artifactory Access Blank Join Key Authentication BypassPoCCVE-2026-86206: N-able N-central - Access Control Bypass via Path Confusion and Forwarded Header SpoofingPoCCVE-2026-86426: LibreNMS <= 26.7.0 - Unauthenticated API AccessPoCgrafana-loki-api-exposure: Grafana Loki - Unauthenticated API Access大华-智慧园区综合管理平台 updateAccessChannelByVisit SQL注入漏洞PoCCVE-2026-46442: Flowise < 3.1.2 - node-custom-function Unauthorized RCEPoCseaweedfs-unauth: SeaweedFS Filer - Unauthenticated AccessUniFi Access /api/ucore/backup/export 命令执行漏洞(CVE-2025-52665)技嘉科技|Gigabyte Control Center - Improper Access ControlPoCopcache-control-panel: Opcache control Panel - Unauthenticated AccessProgress Kemp LoadMaster /accessv2 命令执行漏洞(CVE-2026-8037)