Pedro Ribeiro
213 exploits
Active since Jan 2014
NETGEAR Management System NMS300 <1.5.0.11 - RCE
CVSS 9.6
ZOHO WebNMS Framework <5.2-5.2 SP1 - Path Traversal
CVSS 7.5
ManageEngine Netflow Analyzer 8.6-10.2 and IT360 10.3 - Path Traversal via schFilePath Parameter
ManageEngine Applications Manager <11.9/OpManager 8-11.5/IT360 <=10.5 - Unauthenticated Arbitrary File Read
CVSS 7.5
SysAid Help Desk Arbitrary File Download
IBM Data Risk Manager 2.0.1-2.0.6 - Authentication Bypass via SAML Misconfiguration
CVSS 9.8
ZOHO WebNMS Framework 5.2-5.2 SP1 - Info Disclosure
CVSS 9.8
NETGEAR R6700 V1.0.4.84_10.0.58 - Auth Bypass
CVSS 8.8
ManageEngine DeviceExpert < 5.9 - Unauthenticated Exposure of Sensitive Information via ReadUsersFromMasterServlet
BMC Track-It! 11.3.0.355 - Unauthenticated Remote Code Execution via .NET Remoting
ManageEngine Eventlog Analyzer Managed Hosts Administrator Credential Disclosure
CVSS 7.5
NUUO CMS < 3.3 - Path Traversal
CVSS 9.8
NUUO CMS < 3.1 - Remote Code Execution via Session ID Prediction
CVSS 9.8
ManageEngine <9-0.90043 - SQL Injection
ZOHO WebNMS Framework <5.2-5.2 SP1 - Path Traversal
CVSS 9.8
ManageEngine ServiceDesk Plus < 10.0 - Unauthenticated Arbitrary File Upload via Login Page Customization
CVSS 6.5
ManageEngine ServiceDesk Plus MSP 5-9.0.9030 Path Traversal
CVSS 8.8
ManageEngine EventLog Analyzer 9.0/8.2 - Remote Code Execution via ZIP Traversal
ManageEngine OpManager 8.8-11.3, Social IT Plus 11.0, IT360 <=10.4 - Path Traversal & Arbitrary File Write
Micro Focus Novell Service Desk <7.2 - Path Traversal
CVSS 7.2
SysAid < 15.1 - Unauthenticated Arbitrary File Upload and Remote Code Execution via ChangePhoto.jsp
IBM Planning Analytics <2.0.9 - Privilege Escalation
CVSS 9.8
Novell ZENworks Configuration Management < 11.3.2 - Remote Code Execution via UploadServlet uid Parameter
Cisco Data Center Network Manager Unauthenticated Remote Code Execution
CVSS 5.3
Micro Focus Operation Bridge Manager - Remote Code Execution
CVSS 8.8