LiquidWorm
790 exploits
Active since Jun 2006
SpinetiX Fusion Digital Signage <3.4.8 - Info Disclosure
CVSS 7.5
SpinetiX Fusion Digital Signage 3.4.8 - CSRF
CVSS 8.8
Sony IPELA Network Camera 1.82.01 - RCE
CVSS 9.8
BrightSign Digital Signage Diagnostic Web Server <8.2.26 - SSRF
SpinetiX Fusion Digital Signage <3.4.8 - Path Traversal
CVSS 8.1
ReQuest Serious Play Media Player 3.0 - Info Disclosure
ReQuest Serious Play F3 Media Server 7.0.3 - RCE
ReQuest Serious Play F3 Media Server <7.0.3.4968 - Info Disclosure
BACnet Test Server <= 1.01 - Unauthenticated Denial of Service via Malformed BVLC Length Field
SnapGear Management Console SG560 3.1.5 - CSRF
CVSS 5.3
Thrive Smart Home 1.1 - SQL Injection
CVSS 8.2
INIM Electronics Smartliving SmartLAN/G/SI <=6.x - Info Disclosure
CVSS 7.5
Smartliving SmartLAN/G/SI <=6.x - SSRF
CVSS 5.3
SmartLiving SmartLAN <=6.x - Command Injection
CVSS 8.8
HomeAutomation 3.3.2 - Authentication Bypass via X-Forwarded-For Header Spoofing
CVSS 9.8
HomeAutomation 3.3.2 - Authenticated OS Command Injection via Custom Command Plugin
CVSS 8.0
iWT FaceSentry Access Control System 6.4.8 - Authenticated OS Command Injection via strInIP Parameter
CVSS 8.8
Smartwares HOME easy <=1.0.9 - Unauthenticated Database Backup Download and Information Disclosure
CVSS 7.5
AVE DOMINAplus <=1.10.x - Unauthenticated Denial of Service via Reboot Command Execution
CVSS 7.5
Inim Smartliving Firmware < 6.0 - Use of Hard-coded Credentials
CVSS 9.8
AVE DOMINAplus <=1.10.x - Unauthenticated Credential Disclosure via /xml/authClients.xml
CVSS 9.8
AVE DOMINAplus <= 1.10.x - Unauthenticated Authentication Bypass via changeparams.php autologin Parameter
CVSS 9.8
MyDomoAtHome REST API Domoticz ISS Gateway 0.2.40 - Unauthenticated Information Disclosure
CVSS 7.5
HomeAutomation 3.3.2 - Cross-Site Request Forgery
CVSS 8.8
HomeAutomation 3.3.2 - Stored Cross-Site Scripting via Input Parameter
CVSS 6.1