CN016
9 exploits
Active since Jan 2018
dedecms < 5.7.106 - Remote Code Injection via article_allowurl_edit.php allurls Parameter
Foxit PDF Reader < 12.1.1.15289 and PDF Editor < 10.1.11.37866 - Remote Code Execution via exportXFAData Method
Apache ShenYu 2.3.0-2.4.0 - Authentication Bypass via JWT Misuse
Advantech WebAccess <= 8.3.2 - Path Traversal
Metabase < 0.46.6.1 and < 1.46.6.1 - Unauthenticated Remote Code Execution
CVSS 9.8
Apache Superset Signed Cookie Priv Esc
CVSS 8.9
PowerJob V4.3.1 - Improper Access Control via User Creation Interface
CVSS 5.3
Openfire authentication bypass with RCE plugin
CVSS 8.6
Sonatype Nexus Repository Manager 3.0.0-3.21.2 - Incorrect Access Control
CVSS 8.8