NyaMeeEain

2 exploits Active since Jun 2022
CVE-2022-28171 NOMISEC HIGH WORKING POC
Hikvision Ds-a71024 Firmware < 2.3.8-6 - Command Injection
The web module in some Hikvision Hybrid SAN/Cluster Storage products have the following security vulnerability. Due to the insufficient input validation, attacker can exploit the vulnerability to execute restricted commands by sending messages with malicious commands to the affected device.
4 stars
CVSS 7.5
CVE-2023-49440 NOMISEC HIGH WRITEUP
AhnLab EPP <1.0.15 - SQL Injection
AhnLab EPP 1.0.15 is vulnerable to SQL Injection via the "preview parameter."
CVSS 8.8