Roberto Paleari
27 exploits
Active since Nov 2012
Samsung Kies < 2015-10-30 - Path Traversal via Kies Restore
CVSS 6.4
Samsung kernel - Null Pointer Dereference
CVSS 5.5
Samsung Galaxy S6 Firmware - Unauthorized Sent Email Exposure via SecEmailSync
CVSS 3.3
Samsung Galaxy S6 Firmware - SQL Injection in SecEmailSync
CVSS 9.8
Samsung Galaxy S6 and Note 3 Firmware - URL Filter Bypass via Query String Exceptional URL
CVSS 3.3
Samsung Galaxy S6, Note 3, S4 mini, S4 mini LTE, S4 - Unauthenticated Modem Access via USB Configuration
CVSS 6.8
Samsung Devices - Command Injection
CVSS 6.8
Samsung Galaxy S6, Note 3, S4 mini, S4 mini LTE, S4 - Improper Access Control via AT Command Injection
CVSS 4.6
NETGEAR DGN1000 < 1.1.00.48 - Unauthenticated OS Command Injection via setup.cgi
CVSS 9.8
Netgear WNR1000v3 <1.0.2.60 - Auth Bypass
CVSS 9.8
Netgear WNR1000v3 <1.0.2.60 - Auth Bypass
CVSS 9.8
Huawei AR 150, 200, 1200, 2200, and 3200 - Stack-based Buffer Overflow via SNMPv3 Requests
Sinapsi eSolar, eSolar DUO, eSolar Light, and sinapsi_firmware < 2.0.2870 - Authenticated OS Command Injection
Sinapsi eSolar, eSolar DUO, eSolar Light and sinapsi_firmware < 2.0.2870 - Use of Hard-coded Password
Sinapsi eSolar, eSolar DUO, and eSolar Light < 2.0.2870_xxx_2.2.12 - Unauthenticated SQL Injection
D-Link DIR-645 < 1.04B11 - Cross-Site Scripting via Parental Controls Bind Parameter
D-Link DIR-645 < 1.04B11 - Cross-Site Scripting via Parental Controls Bind Parameter
Sinapsi eSolar, eSolar DUO, eSolar Light, and sinapsi_firmware < 2.0.2870 - Unauthenticated Administrative Access
D-Link DCS Cameras - Multiple Vulnerabilities
Sitecom N300/N600 Devices - Multiple Vulnerabilities
D-Link DIR-645 < 1.04B11 - Cross-Site Scripting via Parental Controls Bind Parameter
BigPond 3G21WB - Multiple Vulnerabilities
D-Link Devices - 'Authentication.cgi' Remote Buffer Overflow (Metasploit)
Huawei Various - Path Traversal
D-Link ShareCenter Products - Multiple Remote Code Execution Vulnerabilities