Gjoko 'LiquidWorm' Krstic
684 exploits
Active since Nov 2005
Osprey Pump Controller v1.0.1 - Unauthenticated Reflected XSS
Osprey Pump Controller 1.0.1 - Cross-Site Request Forgery
Osprey Pump Controller 1.0.1 - Authentication Bypass Credentials Modification
Osprey Pump Controller 1.0.1 - Administrator Backdoor Access
Osprey Pump Controller 1.0.1 - (userName) Blind Command Injection
KZTech T3500V 4G LTE CPE 2.0.1 - Weak Default WiFi Password Algorithm
KevinLAB BEMS 1.0 - Undocumented Backdoor Account
IPUX Cube Type CS303C IP Camera - 'UltraMJCamX.ocx' ActiveX Stack Buffer Overflow
IPUX CS7522/CS2330/CS2030 IP Camera - 'UltraHVCamX.ocx' ActiveX Stack Buffer Overflow
IPUX CL5452/CL5132 IP Camera - 'UltraSVCamX.ocx' ActiveX Stack Buffer Overflow
InfraPower PPS-02-S Q213V1 - Hard-Coded Credentials
Ilevia EVE X1/X5 Server 4.7.18.0.eden - Reverse Rootshell
ICT Protege GX/WX 2.08 - Stored Cross-Site Scripting (XSS)
ICT Protege GX/WX 2.08 - Client-Side SHA1 Password Hash Disclosure
Hughes Satellite Router HX200 v8.3.1.14 - Remote File Inclusion
EuroTel ETL3100 - Transmitter Unauthenticated Config/Log Download
EuroTel ETL3100 - Transmitter Default Credentials
EuroTel ETL3100 - Transmitter Authorization Bypass (IDOR)
DreamBox DM500(+) - Arbitrary File Download
Delta Controls enteliTOUCH 3.40.3935 - Cross-Site Scripting (XSS)
Delta Controls enteliTOUCH 3.40.3935 - Cross-Site Request Forgery (CSRF)
Delta Controls enteliTOUCH 3.40.3935 - Cookie User Password Disclosure
TP-Link TL-WR740N Wireless Router - Denial of Service
TP-Link TL-WR740N <3.17.0 - DoS
Siemens Desigo PX 6.00 - Denial of Service (PoC)