Kevin Finisterre
64 exploits
Active since Dec 2000
Unitree G1, Go2, H1, B2 Firmware - OS Command Injection via BLE WiFi Configuration
CVSS 7.3
Unitree Go2, G1, H1, B2 - Info Disclosure
CVSS 4.7
Unitree Go2-G1-H1-B2 - Info Disclosure
CVSS 5.0
Widcomm Bluetooth for Windows <4.0.1.1500 - Info Disclosure
VERITAS NetBackup 4.5FP/4.5MP/5.0-6.0 - Remote Code Execution via Java UI Format String
GE Fanuc Proficy Real-Time Information Portal < 2.6 - Remote Code Execution via Unrestricted File Upload
ICONICS OPC Enabled Gauge - Buffer Overflow
Citect CitectSCADA 6-7 and CitectFacilities 7 - Remote Code Execution via ODBC Server Service
eIQnetworks Enterprise Security Analyzer < 2.4.0 - Remote Code Execution via Multiple Buffer Overflows
GE Proficy Real Time Information Portal - Credentials Leak Sniffer (Metasploit)
eIQnetworks ESA - Syslog Server Remote Buffer Overflow
IVT BlueSoleil 1.4 - Path Traversal
PHP < 5.2.0 - Buffer Overflow in win32std Extension via win_browse_file Function
libxml2 < 2.7.0 - Heap-Based Buffer Overflow via Long XML Entity Name
Tru64 UNIX 5.0 (Rev. 910) - rdist NLSPATH Buffer Overflow
scoadmin - Caldera/SCO OpenServer <5.0.6 - Local Privilege Escalation
Tru64 UNIX 5.0 (Rev. 910) - edauth NLSPATH Buffer Overflow
ArcGIS for ESRI ArcInfo Workstation 9.0 - Privilege Escalation
Mac OS X 10.4-10.4.5 - Remote Code Execution via Long Real Name in AppleDouble Email Attachment
OpenBase SQL < 10.0.1 - Arbitrary File Creation via Symlink Attack on /tmp/output
macOS 10.3.9 - Directory Traversal via Bluetooth OBEX Services
Xcode OpenBase 9.1.5 (OSX) - Local Privilege Escalation
OpenBase SQL <10.0.1 - Privilege Escalation
Xcode OpenBase 9.1.5 (OSX) - Root File Create Privilege Escalation
VERITAS NetBackup 4.5FP/4.5MP/5.0-6.0 - Remote Code Execution via Java UI Format String