Nicholas Ferreira

6 exploits Active since Nov 2017
CVE-2021-41560 NOMISEC CRITICAL WORKING POC
Opencats < 0.9.6 - Unrestricted File Upload
OpenCATS through 0.9.6 allows remote attackers to execute arbitrary code by uploading an executable file via lib/FileUtility.php.
11 stars
CVSS 9.8
CVE-2018-17254 NOMISEC CRITICAL WORKING POC
JCK Editor <6.4.4 - SQL Injection
The JCK Editor component 6.4.4 for Joomla! allows SQL Injection via the jtreelink/dialogs/links.php parent parameter.
10 stars
CVSS 9.8
CVE-2017-1000170 NOMISEC HIGH WORKING POC
jqueryFileTree <2.1.5 - Path Traversal
jqueryFileTree 2.1.5 and older Directory Traversal
4 stars
CVSS 7.5
CVE-2017-1000170 EXPLOITDB HIGH php WORKING POC
jqueryFileTree <2.1.5 - Path Traversal
jqueryFileTree 2.1.5 and older Directory Traversal
CVSS 7.5
EIP-2026-110277 EXPLOITDB bash WORKING POC
OpenCATS 0.9.4 - Remote Code Execution (RCE)
CVE-2018-17254 EXPLOITDB CRITICAL php WORKING POC
JCK Editor <6.4.4 - SQL Injection
The JCK Editor component 6.4.4 for Joomla! allows SQL Injection via the jtreelink/dialogs/links.php parent parameter.
CVSS 9.8