Ian
8 exploits
Active since Feb 2022
OpenMRS 1.6-2.1.5 - Arbitrary File Exfiltration via /images and /initfilter/scripts Endpoints
CVSS 7.5
Directus < 10.13.2 - Sensitive Information Exposure in Log Files via Query String Access Token
CVSS 4.2
Directus <11.5.0 - Privilege Escalation
CVSS 3.5
Directus 9.0.0-11.8.0 - Sensitive Information Exposure via Log to Console Operation
CVSS 4.2
Directus 9.0.0-11.8.0 - Sensitive Information Exposure in WebHook Flow Logs
CVSS 4.5
Directus 9.0.0-11.8.0 - Unauthenticated Exposure of Sensitive Version Information via OpenAPI Spec Endpoint
CVSS 5.3
Directus <11.9.0 - Privilege Escalation
CVSS 6.5
macOS XNU - Copy-on-Write Behavior Bypass via Mount of User-Owned Filesystem Image