Nuri Çilengir
9 exploits
Active since Jun 2022
Roxy-WI < 6.1.1.0 - Unauthenticated Remote Code Execution via subprocess_execute Function
CVSS 10.0
roxy-wi < 6.1.1.0 - Unauthenticated Authentication Bypass via Crafted HTTP Request
CVSS 10.0
Roxy-wi < 6.1.1.0 - Unauthenticated Remote Code Execution via /app/options.py
CVSS 10.0
Roxy-WI <6.1.1.0 - Command Injection
CVSS 10.0
GLPI Cartography Plugin <6.0.1 - Remote Code Execution via front/upload.php
CVSS 9.8
GLPI 10.0.0-10.0.2 - SQL Injection via Actor Fields
CVSS 9.8
Managentities <4.0.2 - Path Traversal
CVSS 7.5
GLPI CMDB < 3.0.3 - Unauthenticated Sensitive Information Exposure via File Parameter
CVSS 6.5
glpi_inventory < 1.0.2 - Local File Inclusion via Public Script
CVSS 5.3