Al1ex
43 exploits
Active since Mar 2017
Gitlab < 13.8.8 - Code Injection
F5 iControl REST Unauthenticated SSRF Token Generation RCE
Dirty Pipe Local Privilege Escalation via CVE-2022-0847
Oracle JD Edwards Enterpriseone Tools - Insecure Deserialization
MariaDB <10.2.37, 10.3.28, 10.4.18, 10.5.9 - RCE
Fasterxml Jackson-databind < 2.9.10.8 - Insecure Deserialization
F5 BIG-IP iControl RCE via REST Authentication Bypass
Oracle WebLogic Server <14.1.1.0.0 - RCE
Apache Struts 2 Forced Multi OGNL Evaluation
Netapp Cloud Backup < 21.1.2 - Insecure Deserialization
Vmware Cloud Foundation - SSRF
Linux BPF Sign Extension Local Privilege Escalation
VoIPmonitor <24.61 - RCE
Fasterxml Jackson-databind < 2.6.7.5 - Insecure Deserialization
IIS 6.0 - Buffer Overflow
BIG-IP <15.2 - RCE
Oracle Weblogic Server - OS Command Injection
Apache Struts < 2.5.20 - Prototype Pollution
Salt < 2019.2.4 - Path Traversal
Oracle Access Manager unauthenticated Remote Code Execution
Klogserver Klog Server - OS Command Injection
FasterXML jackson-databind <2.9.10.4 - Code Injection
Apache Kylin <4.0.0 - Info Disclosure
Fasterxml Jackson-databind < 2.6.7.3 - Insecure Deserialization
SEOWON INTECH SLC-130,SLR-120S - RCE