0xDTC
16 exploits
Active since Jul 2009
Ghost < 5.59.1 - Authenticated Arbitrary File Read via Symlink Upload
Below < 0.9.0 - Privilege Escalation via World-Writable Log Directory
PrestaShop 8.1.0-8.1.6 - Stored Cross-Site Scripting via Customer Thread Attachment
Bludit 3.9.2 - Authentication Bruteforce Mitigation Bypass via X-Forwarded-For Header
FCKeditor <2.6.4.1 - Path Traversal
1 stars
CPython Path Traversal via TarFile Extraction Filter Bypass
CVSS 7.5
Python <3.14 - Path Traversal
CVSS 9.4
XWiki Platform - Remote Code Execution
CVSS 9.8
CrushFTP - Authentication Bypass
CVSS 9.8
pyload-ng js2py - Remote Code Execution
CVSS 5.3
WonderCMS Remote Code Execution
CVSS 6.1
Chamilo v1.11.24 Unrestricted File Upload PHP Webshell
CVSS 8.1
Pluck-CMS 4.7.18 - Arbitrary File Upload via ZIP File in Modules Install
CVSS 8.8
Argo CD 2.2.0-2.6.15 - Sensitive Information Exposure via kubectl.kubernetes.io/last-applied-configuration Annotation
CVSS 9.9
sqlpad < 6.10.1 - Remote Code Execution via Template Injection in Connection Test Endpoint
CVSS 7.2
Magento CE/EE 1.9.1.0-1.14.1.0 - SQL Injection