Larry W. Cashdollar
55 exploits
Active since Feb 1999
WordPress Plugin Simple Image Manipulator 1.0 - Arbitrary File Download
WordPress Plugin WPTF Image Gallery 1.03 - Arbitrary File Download
WordPress Plugin Recent Backups 0.7 - Arbitrary File Download
XCloner 3.1.1 and 3.5.1 - Exposure of Sensitive Information via Command Line Arguments
WordPress Arigato Autoresponder & Newsletter <v2.5.1.8 - XSS
CVSS 4.8
Aviary Image Editor Add-on for Gravity Forms < 3.0 - Unauthenticated Arbitrary File Upload via upload.php
CVSS 9.8
WordPress Plugin Candidate Application Form 1.0 - Arbitrary File Download
easy2map < 1.2.4 - Unauthenticated Path Traversal and Arbitrary File Write via MapPinImageSave.php map_id Parameter
membership-simplified-for-oap-members-only < 1.58 - Unauthenticated Arbitrary File Upload via download.php
CVSS 9.8
Blueimp jQuery-File-Upload <=9.22.0 - File Upload
CVSS 9.8
Joomla! Component Portfolio Gallery 1.0.6 - SQL Injection
Huge-IT Catalog <1.0.7 - SQL Injection
CVSS 9.8
Huge-IT Portfolio Gallery Plugin <1.0.6 - SQL Injection
CVSS 9.8
Joomla! Component com_videogallerylite 1.0.9 - SQL Injection
Joomla! Component Catalog 1.0.7 - SQL Injection
Huge-IT Video Gallery v1.0.9 - SQL Injection
CVSS 9.8
Drupal Avatar Uploader 7.x-1.0-beta8 - Unauthenticated Path Traversal
CVSS 7.5
Blueimp jQuery-File-Upload <=9.22.0 - File Upload
CVSS 9.8
Blueimp jQuery-File-Upload <=9.22.0 - File Upload
CVSS 9.8
RubyGems fastreader - 'entry_controller.rb' Remote Command Execution
Oracle Solaris - Arbitrary File Write via Symlink Attack on /tmp/CLEANUP
DeleGate 9.9.13 - Privilege Escalation
CVSS 7.8
xsoldier - Privilege Escalation via Long Argument
SAP Database 7.3.0.29 - Privilege Escalation
rpi-update - Insecure Temporary File Handling / Security Bypass