Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-8760 PoC — INSTAR 2K+/4K fcgi_server base64_decode buffer overflow

Source
Associated Vulnerability
Title:INSTAR 2K+/4K fcgi_server base64_decode buffer overflow (CVE-2025-8760)
Description:A vulnerability was identified in INSTAR 2K+ and 4K 3.11.1 Build 1124. This affects the function base64_decode of the component fcgi_server. The manipulation of the argument Authorization leads to buffer overflow. It is possible to initiate the attack remotely.
Description
Proof of Concept for CVE-2025-8760
Readme
# Proof of Concept for CVE-2025-8760

Detailed write-up is available [here](https://modzero.com/en/blog/no-leak-no-problem/).  
File Snapshot

[4.0K] /data/pocs/bb396a0c74dd6aa043daa804bda9669b28c6fe23 ├── [2.6K] exploit.py └── [ 128] README.md 1 directory, 2 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →