Nassim Asrir
21 exploits
Active since Mar 2017
Epross AVCON6 - Unauthenticated Remote Code Execution via OGNL Injection in Login Action
CVSS 9.8
EyesOfNetwork 5.1 - Remote Command Execution via Tool All Host Field
CVSS 8.8
LINK-NET LW-N605R Firmware 12.20.2.1486 - Authenticated Remote Code Execution via Ping HOST Field
CVSS 8.8
Innotube ITGuard-Manager 0.0.0.1 - OS Command Injection via Username Field
CVSS 9.8
Advantech WebAccess 8.3.0 - Remote Code Execution via VBWinExec Command Parameter
CVSS 9.8
Microsoft Windows 10 build 1809 - Local Privilege Escalation (UAC Bypass)
Foxit Reader < 10.0.0 - Remote Command Execution via app.opencPDFWebPage JavaScript API
CVSS 7.8
Microsoft Windows Speech Recognition - Buffer Overflow (PoC)
Lenovo Power Management Driver < 1.67.17.48 - Denial of Service via Buffer Overflow
CVSS 4.4
Cerberus FTP Server <8.0.10.3 - Buffer Overflow
CVSS 9.8
Disk Sorter Enterprise 9.5.12 - Local Buffer Overflow
pfSense 2.3.4-2.4.4-p3 - Remote Code Execution via pfsense.exec_php MethodCall
CVSS 8.8
Openexpert 0.5.17 - 'area_id' SQL Injection
My PHP Dating 2.0 - 'id' SQL Injection
Rejected
pinfo 0.6.9 - Local Buffer Overflow (PoC)
wifirxpower - Local Buffer Overflow (PoC)
reiserfstune 3.6.25 - Local Buffer Overflow
Cisco SA520W Security Appliance - Path Traversal
Industrial Secure Routers EDR-810 / EDR-G902 / EDR-G903 - Insecure Configuration Management
dataTaker DT80 dEX 1.50.012 - Unauthenticated Sensitive Information Exposure via config.xml Request
CVSS 9.8