Ben Thomson
7 exploits
Active since Mar 2021
October CMS < 1.1.2 - Host Header Injection via Trusted Host Misconfiguration
CVSS 6.8
October CMS < 1.1.2 - Host Header Injection via Trusted Host Misconfiguration
CVSS 6.8
Winter 1.1.8-1.1.9, 1.2.0 - Prototype Pollution in Snowboard Framework
CVSS 8.1
October CMS < 1.1.2 - Host Header Injection via Trusted Host Misconfiguration
CVSS 6.8
October CMS < 1.1.2 - Host Header Injection via Trusted Host Misconfiguration
CVSS 6.8
Winter 1.1.8-1.1.9, 1.2.0 - Prototype Pollution in Snowboard Framework
CVSS 8.1
Winter CMS <1.2.7, 1.1.11, 1.0.476 - Auth Bypass
CVSS 8.4