Reisen_1943
59 exploits
Active since Feb 2024
Apache Camel <4.10.2 - Command Injection
Below < 0.9.0 - Privilege Escalation via World-Writable Log Directory
XWiki Platform - Remote Code Execution
Cacti Graph Template authenticated RCE versions prior to 1.2.29
axios < 1.8.2 - Server-Side Request Forgery via Absolute URL Handling
mailcow: dockerized <2025-01a - Info Disclosure
TOTOLINK LR350 <= 9.3.5u.6369 - Authorization Bypass via authCode Parameter
Fortinet FortiOS/FortiProxy/FortiPAM/FortiSwitchManager Format String Vulnerability via Crafted Packets
Gogs < 0.13.0 - Authenticated Remote Code Execution via SSH --split-string Argument Injection
ImageMagick 7.0.11-13-7.1.1-36 - Uncontrolled Search Path Element via MAGICK_CONFIGURE_PATH and LD_LIBRARY_PATH
Moodle Remote Code Execution (CVE-2024-43425)
WordPress TI WooCommerce Wishlist SQL Injection (CVE-2024-43917)
Google Chrome < 128.0.6613.84 - Out of Bounds Memory Access in Skia
Google Chrome <128.0.6613.113 - Buffer Overflow
Google Chrome <128.0.6613.113 - Buffer Overflow
Google Chrome <128.0.6613.137 - Buffer Overflow
Grafana 11.0.0-11.0.5 - Authenticated Command Injection via DuckDB SQL Expressions
7-Zip 24.09 - Mark-of-the-Web Bypass Code Execution
Eastnets PaymentSafe <2.5.26.0 - XSS
picklescan <0.0.21 - Code Injection
Cisco Identity Services Engine and ISE-PIC - Unauthenticated Arbitrary File Upload and Remote Code Execution
Camaleon CMS < 2.9.1 - Privilege Escalation via Mass Assignment in UsersController
2 stars
Windows File Explorer - Exposure of Sensitive Information to an Unauthorized Actor
iPadOS < 17.7.6 - Arbitrary File System Modification
CrushFTP - Authentication Bypass