Eric Sesterhenn
22 exploits
Active since Feb 2017
tnef < 1.4.13 - Out-of-bounds Write in MAPI Attribute Reader
CVSS 7.8
tnef < 1.4.13 - Integer Overflow and Heap Overflow via Memory Allocation Wrapper
CVSS 7.8
tnef < 1.4.13 - Out-of-bounds Read via Type Confusion in parse_file()
CVSS 7.8
tnef < 1.4.13 - Out-of-bounds Read via MAPI Attribute Type Confusion
CVSS 7.8
tnef < 1.4.13 - Out-of-bounds Write in MAPI Attribute Reader
CVSS 7.8
tnef < 1.4.13 - Integer Overflow and Heap Overflow via Memory Allocation Wrapper
CVSS 7.8
tnef < 1.4.13 - Out-of-bounds Read via Type Confusion in parse_file()
CVSS 7.8
tnef < 1.4.13 - Out-of-bounds Read via MAPI Attribute Type Confusion
CVSS 7.8
Peplink Balance Firmware - Unauthenticated Sensitive Information Exposure via HASync Debug Endpoint
CVSS 5.3
Peplink Balance 305 380 580 710 1350 2500 Firmware - Cross-Site Scripting via orig_url Parameter
CVSS 6.1
Peplink Balance 305 380 580 710 1350 2500 Firmware - Cross-Site Scripting via syncid Parameter
CVSS 6.1
Peplink Balance Firmware Cleartext Password Storage in /etc/waipass and /etc/roapass
CVSS 9.8
Peplink Balance 305, 380, 580, 710, 1350, and 2500 Firmware - Cross-Site Request Forgery in Administrative CGI Scripts
CVSS 8.8
Peplink Balance 305, 380, 580, 710, 1350, and 2500 Firmware < 7.0.1-build2093 - SQL Injection via bauth Cookie
CVSS 9.8
psftpd 10.0.4 Build 729 - Log Injection via CSV Escape Bypass
CVSS 5.3
PSFTPd 10.0.4 Build 729 - Unauthenticated Use-After-Free via Crafted SSH Identification String
CVSS 5.9
Web Video Streamer - Multiple Vulnerabilities
Seo Panel - 'file' Directory Traversal
HumHub 0.11.2/0.20.0-beta.2 - SQL Injection
Grand MA 300 Firmware - Cleartext Transmission of Sensitive PIN Data
CVSS 7.5
Grand MA 300 Firmware - Insufficiently Protected Credentials via Weak PIN Verification
CVSS 9.8
Peplink Balance 305 380 580 710 1350 2500 Firmware - Arbitrary File Deletion via upfile.path Parameter
CVSS 8.1