Jonathan Claudius
17 exploits
Active since Jan 2012
bitweaver < 2.8.1 - Path Traversal via overlay_type Parameter
RubyGems < 2.2.9, 2.3.6, 2.4.3, 2.5.0 - Directory Traversal in install_location Function
CVSS 7.5
RubyGems <2.7.6 - Deserialization of Untrusted Data
CVSS 7.8
RubyGems < 2.2.9, 2.3.6, 2.4.3, 2.5.0 - Improper Input Validation in Gem Specification Homepage Attribute
CVSS 5.3
RubyGems < 2.2.9, 2.3.6, 2.4.3, 2.5.0 - Cross-Site Scripting in Gem Server Homepage Display
CVSS 6.1
RubyGems < 2.2.9, 2.3.6, 2.4.3, 2.5.0 - Directory Traversal via Malicious Gem Installation
CVSS 5.5
WordPress < 3.3.1 - Cross-Site Scripting via Installation Setup Parameters
WordPress < 3.3.1 - Static Code Injection and Cross-Site Scripting via Database Configuration
WordPress < 3.3.1 - Unauthenticated Sensitive Information Exposure via Installation Error Messages
Plixer Scrutinizer < 9.5.0 - Unauthenticated Administrative Account Creation via admin.cgi userprefs Action
Exim GHOST (glibc gethostbyname) Buffer Overflow
bitweaver < 2.8.1 - Path Traversal via overlay_type Parameter
Plixer Scrutinizer <= 9.0.1.19899 - Unauthenticated SQL Injection via Default MySQL Credentials
Plixer Scrutinizer <= 9.0.1.19899 - Unauthenticated SQL Injection via Default MySQL Credentials
WordPress < 3.3.1 - Denial of Service via MySQL Query Proxy in Setup-Config
Textpattern CMS 4.4.1 - Cross-Site Scripting via ddb Parameter
bitweaver < 2.8.1 - Cross-Site Scripting via Path Info or Parameter Injection
CVSS 6.1