Gjoko 'LiquidWorm' Krstic
684 exploits
Active since Nov 2005
Hippo CMS 10.1 - Multiple Vulnerabilities
ALC WebCTRL <6.5 - RCE
CVSS 7.8
WEMS BEMS 21.3.1 - Undocumented Backdoor Account
Ametys CMS 3.5.2 - 'lang' XPath Injection
ALC WebCTRL <6.5 - Path Traversal
CVSS 6.3
Resin Application Server 4.0.36 - Source Code Disclosure
Infinite Automation Mango Automation <2.6.0 - RCE
ManageEngine ServiceDesk Plus 8.0 - Multiple Persistent Cross-Site Scripting Vulnerabilities
Elber Reble610 M/ODU XPIC IP-ASI-SDH Microwave Link - Authentication Bypass
Tp-link Tl-sc3130 Firmware - Information Disclosure
CVSS 7.5
SOYAL Biometric Access Control System 5.0 - Master Code Disclosure
SOYAL Biometric Access Control System 5.0 - 'Change Admin Password' CSRF
Sipwise C5 NGCP CSC - 'Multiple' Persistent Cross-Site Scripting (XSS)
Sielco PolyEco Digital FM Transmitter 2.0.6 - Unauthenticated Information Disclosure
Sielco PolyEco Digital FM Transmitter 2.0.6 - Radio Data System POST Manipulation
Sielco PolyEco Digital FM Transmitter 2.0.6 - Authorization Bypass Factory Reset
Sielco PolyEco Digital FM Transmitter 2.0.6 - Authentication Bypass Exploit
Sielco Analog FM Transmitter 2.12 - Cross-Site Request Forgery
Sielco Analog FM Transmitter 2.12 - 'id' Cookie Brute Force Session Hijacking
Prima Systems FlexAir <2.3.38 - Command Injection
CVSS 7.2
Pelco Sarix/Spectra Cameras - Remote Code Execution
Pelco Sarix/Spectra Cameras - Cross-Site Request Forgery / Cross-Site Scripting
Pelco Sarix/Spectra Cameras - Cross-Site Request Forgery (Enable SSH Root Access)
Option CloudGate CG0192-11897 - Multiple Vulnerabilities
Netgear WNR500 Wireless Router - 'webproc?getpage' Traversal Arbitrary File Access