K3ysTr0K3R
47 exploits
Active since Jan 2009
Geoserver unauthenticated Remote Code Execution
Unauthenticated Remote Code Execution - Bricks <= 1.9.6
Hikvision DS-2CD2xx2F-I Series V5.2.0 build 140721 to V5.4.0 build 160530 - Improper Authentication
NextGen Healthcare Mirth Connect <4.4.1 - RCE
Joomla! 4.0.0-4.2.7 - Unauthenticated Improper Access Control in Webservice Endpoints
Apache OFBiz XML-RPC Java Deserialization
Openfire authentication bypass with RCE plugin
Apache APISIX <1.6 - Privilege Escalation
Webmin <= 1.920 - OS Command Injection via password_change.cgi Old Parameter
PHP CGI Argument Injection Remote Code Execution
GitLab GraphQL API User Enumeration
TBK DVR4104 and DVR4216 - Unauthenticated Authentication Bypass via Cookie Header
WordPress < 4.7.1 - Unauthorized User Information Exposure via REST API
Wireless IP Camera (P2P) Firmware - Unauthenticated Credential Exposure via Empty Login Parameters
Sudo <1.9.17p1 - Privilege Escalation
TeamCity < 2023.11.4 - Authentication Bypass
Telesquare TLR-2005KSH - Remote Command Execution
MikroTik RouterOS <6.42 - Path Traversal
D-Link DNS-320L, DNS-325, DNS-327L, and DNS-340L - OS Command Injection via nas_sharing.cgi System Parameter
D-Link DNS-320, DNS-320LW, DNS-325, and DNS-340L - OS Command Injection via cgi_user_add name Parameter
Apache HTTP Server 2.4.49-2.4.50 - Path Traversal and Remote Code Execution via Alias-like Directives
PHPUnit < 4.8.28 and 5.x < 5.6.3 - Remote Code Execution via HTTP POST Data
Grafana Plugin Path Traversal
Zabbix < 4.4 - Unauthenticated Authorization Bypass via Dashboard View Action
Camtron and TecVoz CMNC-200 Firmware 1.102A-008 - Path Traversal via URI
3 stars