References https://github.com/projectdiscovery/nuclei-templates/blob/main/http/vulnerabilities/other/qizhi-fortressaircraft-unauth.yaml https://s4e.io/tools/qizhi-fortressaircraft-unauthorized-admin-access https://github.com/projectdiscovery/nuclei-templates/blob/main/http/vulnerabilities/other/qizhi-fortressaircraft-unauth.yaml https://cve.imfht.com/poc_detail/e7293ff3ee4087b72153c7ed278144ed9bea1d3b https://www.ddosi.org/afrog/ https://gitextract.com/qi4L/qscan
Related VulnerabilitiesPoCCVE-2026-46442: Flowise < 3.1.2 - node-custom-function Unauthorized RCEPoCCVE-2026-27771: Gitea Container Registry - Unauthorized Private Image AccessPoCCVE-2025-55303: Astro - Unauthorized Third-Party Image AccessPoCCVE-2023-3277: MStore API <= 4.10.7 - Unauthorized Account Access and Privilege Escalationbt742-pma-unauthorized-access: BT742 PMA Unauthorized Accesscouchdb-unauthorized: CouchDB Unauthorizedjenkins-unauthorized-rce: Jenkins unauthorized rcenacos-unauthorized-config-download: Nacos 未授权下载配置信息PoCCVE-2020-7136: HPE Smart Update Manager < 8.5.6 - Remote Unauthorized AccessPoCCVE-2021-35336: Tieline IP Audio Gateway <=2.6.4.8 - Unauthorized Remote Admin Panel AccessPoCCVE-2021-42627: D-Link DIR-615 - Unauthorized AccessPoCCVE-2021-45232: Apache APISIX Dashboard <2.10.1 - API Unauthorized AccessPoCCVE-2023-22478: KubePi <= v1.6.4 LoginLogsSearch - Unauthorized Access