AleDiBen

2 exploits Active since Oct 2014
CVE-2019-20085 NOMISEC HIGH WORKING POC
TVT Nvms-1000 Firmware - Path Traversal
TVT NVMS-1000 devices allow GET /.. Directory Traversal
6 stars
CVSS 7.5
CVE-2014-3704 NOMISEC WORKING POC
Drupal < 7.32 - SQL Injection
The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.