Mehmet Ince
176 exploits
Active since Dec 2002
Grav Admin Plugin < 1.10.8 - Unauthenticated Arbitrary YAML Write via Administrator Controller
Grav Admin Plugin < 1.10.8 - Unauthenticated Arbitrary YAML Write via Administrator Controller
CVSS 9.3
Trend Micro InterScan Messaging Security Virtual Appliance 9.0-9.1 - RCE via modTMCSS Proxy
CVSS 8.8
Trend Micro InterScan Web Security Virtual Appliance 6.5 - RCE
CVSS 8.8
Trend Micro InterScan Messaging Security Virtual Appliance < 9.1 - Cross-Site Scripting
CVSS 6.1
Trend Micro InterScan Web Security Virtual Appliance 6.5 - Path Traversal
CVSS 7.5
Micro Focus SMG <471 - Command Injection
CVSS 9.1
prompts.chat Path Traversal via Skill File Handling
CVSS 8.1
prompts.chat Blind SSRF via media-generate
CVSS 4.3
prompts.chat Authorization Bypass Information Disclosure
CVSS 7.5
prompts.chat Identity Confusion via Case-Sensitive Username Handling
CVSS 8.1
CryptoLog PHP - Unauthenticated Remote Code Execution via SQL Injection and Command Injection
Tiki Wiki CMS Groupware < 15.1 - Unauthenticated Arbitrary File Upload via ELFinder Connector
CVSS 9.8
GravCMS 1.10.7 - Unauthenticated Arbitrary YAML Write and PHP Execution via Scheduler Endpoint
CVSS 9.8
Micro Focus Secure Messaging Gateway <471 - SQL Injection
CVSS 10.0
Kaltura Video Platform < 11.1.0-2 - Unauthenticated Remote Code Execution via Unsafe Deserialization in keditorservices
ol_bookmarks 0.7.4 - SQL Injection via id Parameter
WBBlog - SQL Injection via e_id Parameter
Aktueldownload Haber - SQL Injection
Web Server Creator - Web Portal 0.1 - RCE
php-calendar < 0.10.1 - Remote Code Execution via phpc_root_path Parameter
Tiki Wiki CMS Groupware < 15.1 - Unauthenticated Arbitrary File Upload via ELFinder Connector
CVSS 9.8
Trend Micro OfficeScan 11 and XG (12) - Remote Code Execution via Proxy.php T Parameter
CVSS 9.8
Zoho ManageEngine Applications Manager <13.6 - Command Injection
CVSS 9.8
VestaCP <0.9.8-26 - Command Injection
CVSS 8.8