Byte Reaper
46 exploits
Active since Mar 2022
Mbed TLS < 3.6.4 - Use-After-Free in mbedtls_x509_string_to_names()
esm.sh < 136.1 - Path Traversal and Arbitrary File Write via X-Zone-Id Header
1 stars
Gandia Integra Total 2.1.2217.3-4.4.2236.1 - Authenticated SQL Injection via idestudio Parameter
XWiki Platform - SQL Injection
CVSS 9.8
XWiki Platform - SQL Injection
CVSS 9.8
Lantronix Provisioning Manager - RCE
CVSS 8.0
Gandia Integra Total 2.1.2217.3-4.4.2236.1 - Authenticated SQL Injection via idestudio Parameter
CVSS 8.8
esm.sh < 136.1 - Path Traversal and Arbitrary File Write via X-Zone-Id Header
XWiki Platform - SQL Injection
CVSS 9.8
projectworlds Online Admission System 1.0 - SQL Injection via /adminlogin.php a_id Parameter
CVSS 7.3
lpar2rrd < 8.04 - Authenticated Directory Traversal and Remote Code Execution via File Upload
CVSS 8.8
Birth Chart Compatibility <2.0 - Info Disclosure
CVSS 5.3
pybbs < 6.0.0 - Cross-Site Scripting via Username Parameter in Admin Topic List
CVSS 2.4
Tigo Energy's CCA - Command Injection
Tenda FH451 1.0.0.9 - Buffer Overflow
CVSS 8.8
Tenda AC20 16.03.08.12 - Command Injection
CVSS 6.3
macrozheng mall < 1.0.3 - Cross-Site Scripting via Swagger UI configUrl Parameter
CVSS 3.5
ELEX WooCommerce Google Shopping <1.4.3 - SQL Injection
CVSS 4.9
copyparty < 1.18.7 - Reflected Cross-Site Scripting via Recent Uploads Filter Parameter
CVSS 6.3
Belkin F9K1009/F9K1010 <2.00.04/2.09 - Hard-coded Credentials
CVSS 9.8
Mbed TLS < 3.6.4 - Use-After-Free in mbedtls_x509_string_to_names()
CVSS 8.9