John Page (aka hyp3rlinx)
88 exploits
Active since Oct 2017
SEGGER embOS/IP FTP Server < 3.22a - Denial of Service via Invalid LIST STOR or RETR Command
Webmin < 1.850 - Server-Side Request Forgery via PATH_INFO to tunnel/link.cgi
CVSS 8.6
Webmin < 1.850 - Cross-Site Request Forgery via create_job.cgi URI Parameter
CVSS 8.8
PHP-Fusion 9.03.50 - Cross-Site Scripting via Panel Content POST Parameter
CVSS 6.1
IBM i Access Client Solutions <1.1.2-1.1.4, <1.1.4.3-1.1.9.4 - Info...
CVSS 5.1
Argus Surveillance DVR 4.0.0.0 - Directory Traversal
CVSS 7.5
DEWESoft X3 SP1 - Unauthenticated Remote Code Execution via RunExeFile.exe TCP Port 1999
CVSS 9.8
Microsoft Windows Defender - VBScript Detection Bypass
Microsoft Excel 2016 1901 - XML External Entity Injection
Microsoft Windows Defender Bypass - Detection Mitigation Bypass
Trend Micro OfficeScan 11.0 - Use After Free
CVSS 7.5
ServersCheck Monitoring Software 14.3.3 - 'id' SQL Injection
Argus Surveillance DVR 4.0.0.0 - Privilege Escalation
MAPLE WBT SNMP Admin <2.0.195.15 - Buffer Overflow
CVSS 9.8
Windows PowerShell - Event Log Bypass Single Quote Code Execution
Visual Studio 2008 - XML External Entity Injection
ServersCheck Monitoring Software 14.3.3 - Arbitrary File Write
Trend Micro OfficeScan 11.0 and XG (12.0) - Remote Code Execution via Man-in-the-Middle Attack
CVSS 8.1
NoMachine < 5.3.27 and 6.x < 6.3.6 - Untrusted Search Path via Trojan Horse wintab32.dll
CVSS 7.8
Polaris Office 2017 8.1 - Remote Code Execution via Trojan Horse DLL in Current Working Directory
CVSS 7.8
Microsoft Windows - 'dnslint.exe' Drive-By Download
Microsoft DirectX SDK - 'Xact.exe' Remote Code Execution
Microsoft Windows PowerShell ISE - Remote Code Execution
CloudMe Sync < 1.10.9 - Unauthenticated Remote Buffer Overflow via Port 8888
CVSS 9.8
Sophos Endpoint Protection 10.7 - Tamper Protection Bypass via Registry Key Deletion
CVSS 5.5