Podalirius
17 exploits
Active since Sep 2018
Adminer 1.12.0-4.6.2 - Arbitrary File Read via Remote MySQL Database Connection
Windows 10, 11, and Server - Remote Code Execution
Gitea 1.1.0-1.12.5 - Authenticated Remote Code Execution via Git Hook Script Injection
FUEL CMS < 1.4.2 - Unauthenticated Remote Code Execution via Pages Filter or Preview Data Parameter
mail-masta 1.0 - Local File Inclusion in count_of_send.php and csvexport.php
lighttpd 1.4.56-1.4.58 - Denial of Service via Large Header Processing
Ametys CMS <4.5.0 - Info Disclosure
Impacket < 0.9.22 - Path Traversal and Arbitrary File Write via SMB Server
Moodle 4.1.0-4.1.15 and 4.5.0-beta-4.5.1 - Stored Cross-Site Scripting in Site Administration Live Log
Cacti 1.2.8 - Authenticated Remote Code Execution via Cookie Shell Metacharacter Injection
Webmin < 1.997 - Remote Code Execution via Unescaped UI Command
CVSS 9.8
Ametys CMS <4.5.0 - Info Disclosure
CVSS 5.3
mail-masta 1.0 - Local File Inclusion in count_of_send.php and csvexport.php
CVSS 7.5
Gogs 0.5.5-0.12.2 - Authenticated Remote Code Execution via Git Hook Feature
CVSS 7.2
Gitea 1.1.0-1.12.5 - Authenticated Remote Code Execution via Git Hook Script Injection
CVSS 7.2
Gitea 1.12.5 - Remote Code Execution (Authenticated)
.NET Framework, SharePoint Server, and Visual Studio - Remote Code Execution via XML Input Deserialization
CVSS 7.8