HORKimhab
260 exploits
Active since Oct 1988
Windows 11 23H2 - Remote Code Execution via LNK File UI Misrepresentation
CVSS 7.8
Linux Kernel eventpoll - Use-After-Free
CVSS 7.8
Ivanti Sentry - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVSS 10.0
NetScaler - Insufficient Input Validation Leading to Memory Overread
CVSS 7.5
Langflow AI - Unauthenticated Remote Code Execution
CVSS 9.8
Oracle Payments 12.2.3-12.2.15 - Unauthenticated Remote Code Execution via File Transmission
CVSS 9.8
Oracle Payments 12.2.3-12.2.15 - Unauthenticated Remote Code Execution via File Transmission
CVSS 9.8
Progress ADC Products - Unauthenticated OS Command Injection
CVSS 9.6
Cisco Unified Communications Manager - Server-Side Request Forgery (SSRF)
CVSS 8.6
libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c
CVSS 8.1
net/sched: fix pedit partial COW leading to page cache corruption
CVSS 7.8
Lantronix EDS5000 2.1.0.0R3 - Command Injection
CVSS 9.8
KeyguardServiceDelegate - Auth Bypass
CVSS 6.2
Google Android - Heap Buffer Overflow
CVSS 9.8
Windows SMB Server - Privilege Escalation
CVSS 7.8
net/sched: fix pedit partial COW leading to page cache corruption
CVSS 7.8
Lantronix EDS5000 2.1.0.0R3 - Command Injection
CVSS 9.8
Heap out-of-bounds write via odd slice_height in FFmpeg MagicYUV decoder
CVSS 8.8
WordPress Product Slider Pro for WooCommerce plugin < 3.5.3 - Backdoor vulnerability
CVSS 10.0
Gravity SMTP <= 2.1.4 - Unauthenticated Sensitive Information Exposure via REST API
CVSS 7.5
NGINX ngx_http_proxy_v2_module and ngx_http_grpc_module vulnerability
CVSS 8.1
NGINX Open-Source ngx_http_v3_module vulnerability
CVSS 8.1
7-Zip <=26.00 NTFS Compressed Streams - Heap Buffer Overflow
CVSS 8.8
Active Directory Domain Services - Privilege Escalation
CVSS 8.8
Joomla Extension - joomlacontenteditor.net - Remote Code Execution in JCE extension for Joomla < 2.9.99.5
CVSS 9.8