Eliasdekiniweek

2 exploits Active since May 2022
CVE-2022-22980 NOMISEC CRITICAL WORKING POC
Spring Data MongoDB - Code Injection
A Spring Data MongoDB application is vulnerable to SpEL Injection when using @Query or @Aggregation-annotated query methods with SpEL expressions that contain query parameter placeholders for value binding if the input is not sanitized.
1 stars
CVSS 9.8
CVE-2022-26923 NOMISEC HIGH WORKING POC
Active Directory Certificate Services (ADCS) privilege escalation (Certifried)
Active Directory Domain Services Elevation of Privilege Vulnerability
CVSS 8.8