MateusTesser

5 exploits Active since Sep 2023
CVE-2023-43284 NOMISEC HIGH WORKING POC
D-Link DIR-846 - Remote Code Execution via QoS Parameter
D-Link Wireless MU-MIMO Gigabit AC1200 Router DIR-846 100A53DBR-Retail devices allow an authenticated remote attacker to execute arbitrary code via an unspecified manipulation of the QoS POST parameter.
18 stars
CVSS 8.8
CVE-2023-31716 NOMISEC HIGH WRITEUP
FUXA <= 1.1.12 - Local File Inclusion
FUXA <= 1.1.12 has a Local File Inclusion vulnerability via file=fuxa.log
CVSS 7.5
CVE-2023-31717 NOMISEC HIGH WRITEUP
FUXA <= 1.1.12 - SQL Injection
A SQL Injection attack in FUXA <= 1.1.12 allows exfiltration of confidential information from the database.
CVSS 7.5
CVE-2023-31718 NOMISEC HIGH WRITEUP
FUXA <= 1.1.12 - Path Traversal
FUXA <= 1.1.12 is vulnerable to Local via Inclusion via /api/download.
CVSS 7.5
CVE-2023-31719 NOMISEC CRITICAL WORKING POC
FUXA <= 1.1.12 - SQL Injection
FUXA <= 1.1.12 is vulnerable to SQL Injection via /api/signin.
CVSS 9.8