Aurélien BOURDOIS
5 exploits
Active since Jan 2025
EasyVirt DCScope <= 8.6.0, CO2Scope <= 1.3.0 - Privilege Escalation
CVSS 8.8
EasyVirt CO2Scope < 1.3.0 and DCScope < 8.6.0 - Authenticated SQL Injection via User and Group Management APIs
CVSS 7.5
EasyVirt CO2Scope < 1.3.0 and DCScope < 8.6.0 - Unauthenticated Remote Code Execution via License API
CVSS 9.8
EasyVirt DC NetScope <= 8.7.0 - Authenticated Remote Code Execution via International Settings Parameters
CVSS 8.8
EasyVirt DC NetScope <= 8.6.4 - Cross-Site Scripting via SMTP or NTP/DNS Parameters
CVSS 5.4