Gjoko 'LiquidWorm' Krstic

684 exploits Active since Nov 2005
EIP-2026-103757 EXPLOITDB text WRITEUP
ABB Cylon FLXeon 9.3.4 - Default Credentials
EIP-2026-103756 EXPLOITDB text WRITEUP
ABB Cylon FLXeon 9.3.4 - Cross-Site Request Forgery
EIP-2026-103755 EXPLOITDB text WRITEUP
ABB Cylon Aspect 3.08.03 (CookieDB) - SQL Injection
EIP-2026-103754 EXPLOITDB text WORKING POC
ABB Cylon Aspect 3.08.02 - PHP Session Fixation
CVE-2024-48846 EXPLOITDB HIGH html WORKING POC
ABB ASPECT/MATRIX/NEXUS Firmware < 3.08.03 - Cross-Site Request Forgery
Cross Site Request Forgery vulnerabilities where found providing a potiential for exposing sensitive information or changing system settings.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
CVSS 7.1
CVE-2024-51546 EXPLOITDB HIGH text WRITEUP
ABB ASPECT Enterprise, NEXUS Series, MATRIX Series <3.08.02 - Credentials Disclosure
Credentials Disclosure vulnerabilities allow access to on board project back-up bundles.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
CVSS 7.5
CVE-2024-48839 EXPLOITDB CRITICAL text WORKING POC
ABB ASPECT/Enterprise/NEXUS/MATRIX Firmware < 3.08.03 - Remote Code Execution
Improper Input Validation vulnerability allows Remote Code Execution.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
CVSS 10.0
CVE-2024-6516 EXPLOITDB CRITICAL text WORKING POC
ABB ASPECT Enterprise and NEXUS/MATRIX Series < 3.08.03 - Cross-Site Scripting
Cross Site Scripting vulnerabilities where found providing a potential for malicious scripts to be injected into a client browser.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
CVSS 9.0
CVE-2024-6516 EXPLOITDB CRITICAL text WORKING POC
ABB ASPECT Enterprise and NEXUS/MATRIX Series < 3.08.03 - Cross-Site Scripting
Cross Site Scripting vulnerabilities where found providing a potential for malicious scripts to be injected into a client browser.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
CVSS 9.0
CVE-2024-6516 EXPLOITDB CRITICAL text WORKING POC
ABB ASPECT Enterprise and NEXUS/MATRIX Series < 3.08.03 - Cross-Site Scripting
Cross Site Scripting vulnerabilities where found providing a potential for malicious scripts to be injected into a client browser.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
CVSS 9.0
CVE-2012-0677 EXPLOITDB python WORKING POC
Apple iTunes <10.6.3 - Buffer Overflow
Heap-based buffer overflow in Apple iTunes before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted .m3u playlist.
CVE-2010-2204 EXPLOITDB c WORKING POC
Adobe Acrobat and Reader 9.x < 9.3.3 and 8.x < 8.2.3 - Denial of Service or Remote Code Execution
Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors.
EIP-2026-103381 EXPLOITDB text WORKING POC
RoyalTSX 6.0.1 - RTSZ File Handling Heap Memory Corruption PoC
EIP-2026-103149 EXPLOITDB text WRITEUP
Iris ID IrisAccess iCAM4000/iCAM7000 - Hard-Coded Credentials Remote Shell Access
EIP-2026-102856 EXPLOITDB text WORKING POC
GNU Barcode 0.99 - Memory Leak
EIP-2026-102575 EXPLOITDB python WORKING POC
DCMTK 3.6.0 storescp - Stack Buffer Overflow
EIP-2026-102543 EXPLOITDB text WORKING POC
XpoLog Center 6 - Remote Command Execution / Cross-Site Request Forgery
EIP-2026-102475 EXPLOITDB python WORKING POC
DALIM SOFTWARE ES Core 5.0 build 7184.1 - User Enumeration
EIP-2026-102474 EXPLOITDB text WORKING POC
DALIM SOFTWARE ES Core 5.0 build 7184.1 - Server-Side Request Forgery
EIP-2026-102473 EXPLOITDB text WORKING POC
DALIM SOFTWARE ES Core 5.0 build 7184.1 - Directory Traversal
EIP-2026-102472 EXPLOITDB html WORKING POC
DALIM SOFTWARE ES Core 5.0 build 7184.1 - Cross-Site Scripting / Cross-Site Request Forgery
EIP-2026-102456 EXPLOITDB text WORKING POC
Asbru Web Content Management System 9.2.7 - Multiple Vulnerabilities
EIP-2026-102442 EXPLOITDB text WORKING POC
NethServer 7.3.1611 - Cross-Site Request Forgery / Cross-Site Scripting
EIP-2026-102441 EXPLOITDB html WORKING POC
NethServer 7.3.1611 - Cross-Site Request Forgery (Create User / Enable SSH Access)
EIP-2026-102419 EXPLOITDB text WORKING POC
Sakai 10.7 - Multiple Vulnerabilities