Matthew Penner
11 exploits
Active since Feb 2023
Pterodactyl Panel < 1.11.6 - Stored Cross-Site Scripting via Egg Import
CVSS 6.1
Pterodactyl Panel < 1.11.6 - Stored Cross-Site Scripting via Egg Import
CVSS 6.1
Pterodactyl <1.11.8 - Info Disclosure
CVSS 4.6
Pterodactyl Panel < 1.11.11 - Unauthenticated Remote Code Execution via Locale Endpoint
CVSS 10.0
Pterodactyl Wings < 1.7.3 and 1.11.x < 1.11.3 - Unauthenticated Arbitrary File Write via Symbolic Link
CVSS 8.4
Pterodactyl Wings 1.7.0-1.7.3 and 1.11.0-1.11.3 - Authenticated Arbitrary File Deletion via Symbolic Link
CVSS 9.6
Pterodactyl Wings < 1.11.9 - Path Traversal
CVSS 9.9
Pterodactyl Wings < 1.11.12 - Arbitrary File Read and Write via Leaked Token
CVSS 8.4
Pterodactyl Panel < 1.11.6 - Stored Cross-Site Scripting via Egg Import
CVSS 6.1
Pterodactyl Panel <1.11.2 - Auth Bypass
CVSS 6.4
Pterodactyl <1.11.8 - Info Disclosure
CVSS 4.6