EgiX
136 exploits
Active since Feb 2005
appRain CMF <= 0.1.5 - Unauthenticated Arbitrary File Upload and Remote Code Execution
Ajax File and Image Manager < 1.1 - Remote Code Execution via PHP Code Injection in data.php
DataLife Engine <9.7 - Info Disclosure
Achievo 1.2.0-1.3.2 - Unauthenticated Arbitrary File Upload and Remote Code Execution via MCPUK File Editor
Tuleap < 9.6 - Remote Code Execution via User::getRecentElements() Unserialize
CVSS 8.8
Tuleap < 7.7 - Authenticated PHP Object Injection via Project Registration Data Parameter
Mantis < 1.1.4 - Authenticated Remote Code Execution via Sort Parameter
Invision Power Board 3.1.x-3.3.x core.php - Impact Unknown
Horde Application Framework < 5.1.1 - Remote Code Execution via Serialized Object in _formvars
WebCalendar < 1.2.5 - Remote Code Execution via form_single_user_login Parameter
CVSS 9.8
openSIS 4.5-5.2 - Remote Code Execution via ajax.php modname Parameter