Jared Arave
26 exploits
Active since Aug 2017
Kaseya Unitrends Backup < 10.1 - Unauthenticated Command Injection via /api/hosts Parameter
CVSS 9.8
Nagios XI 5.2.0-5.4.12 - Remote Code Execution via OS Command Injection
CVSS 8.8
Nagios XI <5.4.13 - Privilege Escalation
CVSS 8.8
Nagios XI 5.2.0-5.4.12 - Unauthenticated SQL Injection via Core Config Manager
CVSS 9.8
Kaseya Unitrends Backup < 10.1 - Unauthenticated Command Injection via /api/hosts Parameter
CVSS 9.8
Nagios XI 5.2.0-5.4.12 - Remote Code Execution via OS Command Injection
CVSS 8.8
Nagios XI 5.2.0-5.4.12 - Remote Code Execution via OS Command Injection
CVSS 8.8
Nagios XI 5.2.0-5.4.12 - SQL Injection via selInfoKey1 Parameter
CVSS 9.8
Nagios XI 5.2.0-5.4.12 - SQL Injection via selInfoKey1 Parameter
CVSS 9.8
Nagios XI 5.2.0-5.4.12 - Unauthenticated SQL Injection via Core Config Manager
CVSS 9.8
Nagios XI 5.2.0-5.4.12 - Unauthenticated SQL Injection via Core Config Manager
CVSS 9.8
Unitrends UEB http api remote code execution
CVSS 9.8
Unitrends UEB bpserverd authentication bypass RCE
CVSS 9.8
Unitrends Backup < 10.1.10 - SQL Injection and Remote Code Execution via Authentication Bypass
CVSS 9.8
Unitrends UEB http api remote code execution
CVSS 9.8
Nagios XI 5.2.0-5.4.12 - SQL Injection via selInfoKey1 Parameter
CVSS 9.8
Unitrends Backup <10.0.0 - Privilege Escalation
CVSS 8.8
Nagios XI <5.4.13 - Privilege Escalation
CVSS 8.8
Unitrends UEB bpserverd authentication bypass RCE
CVSS 9.8
Unitrends UEB http api remote code execution
CVSS 9.8
Nagios XI <5.4.13 - Privilege Escalation
CVSS 8.8
Unitrends UEB http api remote code execution
CVSS 9.8
Unitrends UEB bpserverd authentication bypass RCE
CVSS 9.8
Unitrends Backup < 10.1.10 - SQL Injection and Remote Code Execution via Authentication Bypass
CVSS 9.8
Kaseya Unitrends Backup < 10.1 - Unauthenticated Command Injection via /api/hosts Parameter
CVSS 9.8