Maalfer
10 exploits
Active since Jan 2021
WinRAR CVE-2023-38831 Exploit
Jenkins cli Ampersand Replacement Arbitrary File Read
Sudo <1.9.17p1 - Privilege Escalation
Sudo Heap-Based Buffer Overflow
WordPress Really Simple SSL Plugin Authentication Bypass to RCE
Server-Side Request Forgery in Pentestify PDF export via unvalidated image URLs
Stored XSS in Pentestify via unsanitized finding images and report client logo
Lack of input validation in Mailerup input parameter leads to Open Redirect
Unauthenticated self-registration in MailerUp allows access to stored email data
SSRF in Pentestify PDF generation endpoint via Host header