Nicolas CHATELAIN
19 exploits
Active since Jan 2017
SPIP < 3.1.2 - Authenticated Remote Code Execution via Crafted INCLUDE/INCLURE Tag
UCOPIA Wireless Appliance < 5.1.7 - OS Command Injection via chroothole_client Argument
UCOPIA Wireless Appliance < 5.1.8 - Authenticated Privilege Escalation via Less Command Shell Metacharacter Injection
Cobbler < 3.3.0 - Remote Code Execution via XMLRPC Log Poisoning
Unraid < 6.8.0 - Unauthenticated Remote Code Execution
Opensuse Backports Sle - Race Condition
Sympa <6.2.56 - Privilege Escalation
unraid 6.8.0 - Authentication Bypass
CVSS 7.5
Unraid < 6.8.0 - Unauthenticated Remote Code Execution
CVSS 9.8
Unraid < 6.8.0 - Unauthenticated Remote Code Execution
CVSS 9.8
Centreon 2.5.3 - Web Useralias Command Execution (Metasploit)
SPIP < 3.1.2 - Authenticated Remote Code Execution via Crafted INCLUDE/INCLURE Tag
CVSS 8.8
SPIP < 3.1.2 - Cross-Site Request Forgery via XML Validator
CVSS 8.8
SPIP < 3.1.2 - Path Traversal via var_url Parameter
CVSS 7.5
Centreon 2.5.3 - Remote Command Execution
unraid 6.8.0 - Authentication Bypass
CVSS 7.5
Proxmox VE 3/4 - Insecure Hostname Checking Remote Command Execution
UCOPIA Wireless Appliance < 5.1.8 - Authenticated Privilege Escalation via Less Command Shell Metacharacter Injection
CVSS 7.2
UCOPIA Wireless Appliance < 5.1.7 - OS Command Injection via chroothole_client Argument
CVSS 8.2