0xAshwesker
19 exploits
Active since Apr 2014
FreeScout <=1.8.206 - Authenticated RCE
Apache mod_cgi Bash Environment Variable Code Injection (Shellshock)
CVSS 9.8
Fortinet FortiWeb unauthenticated RCE
CVSS 9.8
WPvivid Backup & Migration <0.9.123 - Unauthenticated RCE
CVSS 9.8
Redis < 6.2.20, 8.2.1-8.2.2 - Authenticated Use-After-Free via Lua Script Garbage Collector Manipulation
CVSS 9.9
GNU Inetutils Telnet Authentication Bypass Exploit CVE-2026-24061
CVSS 9.8
Apache mod_cgi Bash Environment Variable Code Injection (Shellshock)
CVSS 9.8
Sudo <1.9.17p1 - Privilege Escalation
CVSS 9.3
React Server Components <19.2.0 - RCE
CVSS 10.0
OpenSSL 1.0.1-1.0.1f - Out-of-bounds Read via Heartbeat Extension
CVSS 7.5
n8n 1.65.0-1.120.9 - Unauthenticated Arbitrary File Read via Form-Based Workflow Execution
CVSS 10.0
FreeScout <=1.8.206 - Authenticated RCE
CVSS 10.0
Citrix NetScaler ADC/Gateway 12.1-12.1-55.328, 13.1-13.1-37.235, 13.1-13.1-58.32 - Out-of-bounds Read
CVSS 7.5
BIG-IP 11.6.1-11.6.5.1 - Remote Code Execution via TMUI Undisclosed Pages
CVSS 9.8
Log4Shell HTTP Header Injection
CVSS 10.0
Spring Framework - Remote Code Execution via Data Binding
CVSS 9.8
xz <5.6.0 - Code Injection
CVSS 10.0
MongoDB Memory Disclosure (CVE-2025-14847) - Mongobleed
CVSS 7.5
Fortinet FortiWeb - SQL Injection
CVSS 9.8