Johannes Dahse
15 exploits
Active since Aug 2009
Shopizer < 1.1.5 - Unauthenticated Price Manipulation via Negative Product Quantity
Shopizer < 1.1.5 - Unauthenticated Arbitrary User Account Modification via customer.customerId Parameter
Shopizer < 1.1.5 - Cross-Site Request Forgery
Apache Struts <2.3.1.1 - Code Injection
Apache Struts < 2.3.1.1 - Remote Code Execution via CookieInterceptor
Apache Struts < 2.2.3.1 - Remote Code Execution via ExceptionDelegator OGNL Expression Injection
CVSS 9.8
Apache Struts 2.0.0-2.3.16 - Remote Code Execution via DebuggingInterceptor
Apache Struts < 2.2.3.1 - Remote Code Execution via ExceptionDelegator OGNL Expression Injection
CVSS 9.8
Akeeba Restore <3.3.4 - Info Disclosure
Shopizer < 1.1.5 - Cross-Site Scripting via Multiple Parameters
Akeeba Restore <3.3.4 - Info Disclosure
Apache Struts 2.0.0-2.3.16 - Remote Code Execution via DebuggingInterceptor
GreenSQL Firewall - SQL Injection Protection Bypass via WHERE Clause Expression
Apache Struts < 2.2.3.1 - Remote Code Execution via ExceptionDelegator OGNL Expression Injection
CVSS 9.8
Apache Struts 2.0.0-2.3.16 - Remote Code Execution via DebuggingInterceptor