Pari Malam
16 exploits
Active since Apr 2022
Joomla! < 4.2.8 - Improper Access Control
Chamilo unauthenticated command injection in PowerPoint upload
WSO2 Arbitrary File Upload to RCE
WordPress Automatic Plugin <= 3.92.0 - SQL Injection
Openfire authentication bypass with RCE plugin
Dlink Dns-320l Firmware - Command Injection
Jenkins cli Ampersand Replacement Arbitrary File Read
Spip < 3.2.18 - Insecure Deserialization
Apache Superset Signed Cookie Priv Esc
Apache OFBiz forgotPassword/ProgramExport RCE
Inspireui Mstore API < 3.9.2 - Authentication Bypass
Papercut MF < 20.1.7 - Improper Access Control
WordPress Automatic Plugin <= 3.92.0 - SQL Injection
CVSS 9.9
Juniper Networks Junos OS on EX Series <20.4R3-S9 - PHP External Variable Modification
CVSS 5.3
WordPress File Sharing Plugin <2.0.3 - XSS
CVSS 4.4
Inspireui Mstore API < 3.9.2 - Authentication Bypass
CVSS 9.8