Nicolas Serra
9 exploits
Active since Mar 2017
OpenMRS Java Deserialization RCE
PhpCollab < 2.5.1 - Authenticated Arbitrary File Upload via Client Logo Upload
CVSS 8.8
OpenMRS Java Deserialization RCE
CVSS 9.8
PhpCollab < 2.5.1 - Authenticated Arbitrary File Upload via Client Logo Upload
CVSS 8.8
phpcollab < 2.5.1 - Unauthenticated SQL Injection via project or id Parameters
CVSS 9.8
EyesOfNetwork < 5.0 - Authenticated SQL Injection via bp_name, display, search, equipment, or type Parameter
CVSS 7.2
EyesOfNetwork eonweb < 5.0-0 - Authenticated OS Command Injection via selected_events[] Parameter
CVSS 8.8
PhpCollab < 2.5.1 - Authenticated Arbitrary File Upload via Client Logo Upload
CVSS 8.8
OpenMRS Java Deserialization RCE
CVSS 9.8