Larry W. Cashdollar
55 exploits
Active since Feb 1999
XCloner 3.1.1 and 3.5.1 - Authenticated Remote Code Execution via Shell Metacharacter Injection
XCloner 3.1.1 and 3.5.1 - Unauthenticated Exposure of MySQL Password in Configuration Panel
XCloner 3.1.1 and 3.5.1 - Unauthenticated Sensitive Information Exposure via Predictable Backup File Names
XCloner 3.1.1 and 3.5.1 - Authenticated Path Traversal via File Parameter
WordPress Arigato Autoresponder & Newsletter <v2.5.1.8 - XSS
CVSS 4.8
WordPress Arigato Autoresponder & Newsletter <v2.5.1.8 - XSS
CVSS 4.8
Arigato Autoresponder and Newsletter 2.5.0-2.5.1.5 - Authenticated Stored Cross-Site Scripting via POST Variable Classes
CVSS 4.8
Arigato Autoresponder and Newsletter 2.5.0-2.5.1.4 - Stored XSS via filter_signup_date
CVSS 4.8
WordPress Arigato Autoresponder & Newsletter <v2.5.1.8 - XSS
CVSS 4.8
WordPress Arigato Autoresponder & Newsletter <v2.5.1.8 - XSS
CVSS 4.8
WordPress Arigato Autoresponder & Newsletter <v2.5.1.8 - XSS
CVSS 4.8
WordPress Arigato Autoresponder & Newsletter <v2.5.1.8 - XSS
CVSS 4.8
WordPress Arigato Autoresponder & Newsletter <v2.5.1.8 - SQL Injection
CVSS 7.2
easy2map < 1.2.4 - SQL Injection via mapName Parameter
Blueimp jQuery-File-Upload <=9.22.0 - File Upload
CVSS 9.8
Oracle Solaris - Arbitrary File Write via Symlink Attack on /tmp/CLEANUP
SawMill 5.0.21 - Weak Password Encryption
Solaris - Local Privilege Escalation
scotty 2.1.0 - Local Buffer Overflow via Long Hostname Command Line Argument
Tarantella Enterprise 3 - Local File Overwrite
WordPress Plugin VideoWhisper Video Conference Integration 4.91.8 - Arbitrary File Upload
WordPress Plugin VideoWhisper Video Presentation 3.31.17 - Arbitrary File Upload
Swim Team plugin <1.44.10777 - Path Traversal
CVSS 5.3
WP e-Commerce Shop Styling <2.6 - Path Traversal
CVSS 7.5
WordPress Plugin Simple Image Manipulator 1.0 - Arbitrary File Download