Dolev Farhi
40 exploits
Active since May 2014
Opsview < 4.6.2 - Cross-Site Scripting via Crafted Check Plugin or Host Profile Description
ntop-ng 2.5.160805 - Username Enumeration
ntopng < 2.0.151021 - Authenticated Privilege Escalation via User Cookie and Username Parameter
Hasura GraphQL 2.2.0 - Information Disclosure
Mayan EDMS 0.13 - Authenticated Stored Cross-Site Scripting via Tag, Title, Name, or Smart Link Fields
Zenoss 4.2.5 - Stored Cross-Site Scripting via Device Title
Atlassian Jira Server/Data Center <7.13.6, 8.0.0-8.5.7 - User Enumeration via ViewUserHover.jspa
CVSS 5.3
Apache Superset 1.1.0 - Time-Based Account Enumeration
RabbitMQ Web Management < 3.7.6 - Cross-Site Request Forgery (Add Admin)
Cobbler 2.8.0 - (Authenticated) Remote Code Execution
Netgear DGN2200 1.0.0.29_1.7.29_HotS - Password Disclosure
OpenFiler 2.99.1 - Multiple Persistent Cross-Site Scripting Vulnerabilities
OpenFiler 2.99.1 - Arbitrary Code Execution
Netgear DGN2200 1.0.0.29_1.7.29_HotS - Persistent Cross-Site Scripting
Hitron Router CGN3ACSMR 4.5.8.16 - Arbitrary Code Execution