Drew Alleman
5 exploits
Active since Nov 2018
SmarterTools SmarterMail less than build 6985 - .NET Deserialization Remote Code Execution
SaltStack Salt <2019.2.4,3000.2 - RCE
elabftw 1.8.5 - Authenticated Arbitrary File Upload via EntityController
CVSS 8.8
Subrion CMS < 4.2.2 - Remote Code Execution via .pht or .phar File Upload
CVSS 7.2
SaltStack Salt < 2019.2.4 - Authenticated Path Traversal via ClearFuncs Methods
CVSS 6.5