Adrian Bondocea

2 exploits Active since Dec 2020
CVE-2020-28169 EXPLOITDB HIGH text WRITEUP
Td-agent-builder < 2020-12-18 - Incorrect Permission Assignment
The td-agent-builder plugin before 2020-12-18 for Fluentd allows attackers to gain privileges because the bin directory is writable by a user account, but a file in bin is executed as NT AUTHORITY\SYSTEM.
CVSS 7.0
CVE-2021-36520 EXPLOITDB HIGH text SCANNER
I-Tech Trainsmart r1044 - SQL Injection
A SQL injection vulnerability in I-Tech Trainsmart r1044 exists via a evaluation/assign-evaluation?id= URI.
CVSS 7.5