Rich Lundeen

2 exploits Active since Sep 2013
CVE-2012-5357 METASPLOIT CRITICAL ruby WORKING POC
Ektron Content Management System < 8.02 - Remote Code Execution via XSLT Script Execution
Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remote attackers to execute arbitrary code with NETWORK SERVICE privileges via crafted XSL data.
CVSS 9.8
CVE-2013-3893 METASPLOIT HIGH ruby WORKING POC
Microsoft Internet Explorer 6-11 - Remote Code Execution via SetMouseCapture Use-After-Free
Use-after-free vulnerability in the SetMouseCapture implementation in mshtml.dll in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code via crafted JavaScript strings, as demonstrated by use of an ms-help: URL that triggers loading of hxds.dll.
CVSS 8.8