Byte Reaper
46 exploits
Active since Mar 2022
XWiki Platform - SQL Injection
Mojo in Google Chrome <134.0.6998.177 - RCE
ELEX WooCommerce Google Shopping <1.4.3 - SQL Injection
pybbs < 6.0.0 - Cross-Site Scripting via Username Parameter in Admin Topic List
Linux Kernel 4.2-6.16.6 Use-After-Free in __mark_inode_dirty
code-projects Online Appointment Booking System 1.0 - SQL Injection
macrozheng mall < 1.0.3 - Cross-Site Scripting via Swagger UI configUrl Parameter
projectworlds Online Admission System 1.0 - SQL Injection via /adminlogin.php a_id Parameter
Belkin F9K1009/F9K1010 <2.00.04/2.09 - Hard-coded Credentials
Campcodes Online Movie Theater Seat Reservation System 1.0 - XSS
Tenda FH451 1.0.0.9 - Buffer Overflow
M-Files Server < 24.8.13981.16 and 25.3.14681.7-25.6.14925.0 - Authenticated Path Traversal via API Endpoint
lpar2rrd < 8.04 - Authenticated Directory Traversal and Remote Code Execution via File Upload
copyparty < 1.18.7 - Reflected Cross-Site Scripting via Recent Uploads Filter Parameter
IBM MQ Operator 2.0.0-2.0.29, 3.1.0-3.1.3, 3.2.0-3.2.12 - Improper Certificate Validation in Native HA CRR
Campcodes Online Learning Management System 1.0 - SQL Injection
PHP CGI Argument Injection Remote Code Execution
Dirty Pipe Local Privilege Escalation via CVE-2022-0847
Linux Kernel - Use-After-Free in TCP BPF Verdict Handling
Tigo Energy's CCA - Command Injection
1 stars
Car Rental System 1.0 - SQL Injection via fname Parameter in book_car.php
Lantronix Provisioning Manager - RCE
Online Tour and Travel Management System 1.0 - SQL Injection via val-username Parameter
Tenda AC20 16.03.08.12 - Command Injection
Birth Chart Compatibility <2.0 - Info Disclosure