Matthew Aberegg
21 exploits
Active since Jun 2016
Rconfig 3.x Chained Remote Code Execution
CVSS 9.8
LimeSurvey 4.3.10 - XSS
CVSS 5.4
LimeSurvey Zip Path Traversals
CVSS 9.8
Nagios XI 5.6.0-5.7.3 - Mibs.php Authenticated Remote Code Exection
CVSS 7.2
Apache James Server 2.3.2 - RCE
CVSS 8.1
rConfig <3.9.5 - Command Injection
CVSS 9.8
Pandora FMS 7.0 NG 749 - Multiple Persistent Cross-Site Scripting Vulnerabilities
Pandora FMS 7.0 NG 750 - 'Network Scan' SQL Injection (Authenticated)
Pandora FMS 7.0 NG 749 - 'CG Items' SQL Injection (Authenticated)
osTicket 1.14.1 - 'Saved Search' Persistent Cross-Site Scripting
osTicket 1.14.1 - 'Ticket Queue' Persistent Cross-Site Scripting
Nagios XI 5.7.3 - 'Contact Templates' Persistent Cross-Site Scripting
Nagios XI 5.7.5 - Multiple Persistent Cross-Site Scripting
Nagios XI 5.7.3 - 'SNMP Trap Interface' Authenticated SQL Injection
Nagios XI 5.6.0-5.7.3 - Mibs.php Authenticated Remote Code Exection
CVSS 7.2
Nagios XI 5.7.3 - 'Manage Users' Authenticated SQL Injection
LimeSurvey 4.1.11 - 'Permission Roles' Persistent Cross-Site Scripting
Limesurvey < 4.1.11 - XSS
CVSS 5.4
Limesurvey < 4.1.11 - Path Traversal
CVSS 9.8
Apache James Server 2.3.2 - RCE
CVSS 8.1
Netgate Pfsense < 2.4.5 - XSS
CVSS 5.4