0xBlackash
114 exploits
Active since Apr 2014
Log4Shell HTTP Header Injection
CVSS 10.0
BIG-IP 11.6.1-11.6.5.1 - Remote Code Execution via TMUI Undisclosed Pages
CVSS 9.8
OpenSSL 1.0.1-1.0.1f - Out-of-bounds Read via Heartbeat Extension
CVSS 7.5
Apache mod_cgi Bash Environment Variable Code Injection (Shellshock)
CVSS 9.8
n8n 1.65.0-1.120.9 - Unauthenticated Arbitrary File Read via Form-Based Workflow Execution
CVSS 10.0
Fortinet FortiClientEMS <7.4.4 - SQL Injection
CVSS 9.8
Cisco Secure Firewall Management Center - Auth Bypass & RCE via Crafted HTTP Requests
CVSS 10.0
WPvivid Backup & Migration <0.9.123 - Unauthenticated RCE
CVSS 9.8
Fortinet FortiWeb unauthenticated RCE
CVSS 9.8
Citrix NetScaler ADC/Gateway 12.1-12.1-55.328, 13.1-13.1-37.235, 13.1-13.1-58.32 - Out-of-bounds Read
CVSS 7.5
React Server Components <19.2.0 - RCE
CVSS 10.0
Redis < 6.2.20, 8.2.1-8.2.2 - Authenticated Use-After-Free via Lua Script Garbage Collector Manipulation
CVSS 9.9
Sudo <1.9.17p1 - Privilege Escalation
CVSS 9.3
Fortinet FortiClientEMS <7.4.4 - SQL Injection
CVSS 9.8