SEC Consult
94 exploits
Active since Dec 2005
Polycom Realpresence Resource Manager < 8.3.2 - Information Disclosure
CVSS 6.5
Polycom Realpresence Resource Manager < 8.3.2 - Credentials Management
CVSS 7.8
Apache Struts <2.3.1.1 - Code Injection
Apache Struts <2.3.1.1 - RCE
Apache Struts <2.2.3.1 - RCE
CVSS 9.8
Aruba Airwave <8.2.3.1 - XSS
CVSS 6.1
RSA Enterprise Compromise Assessment Tool 4.1.0.1 - XML External Entity Injection
Oracle WebCenter Sites - Integrity
SonicWALL GLobal VPN Client <4.0.0.810 - RCE
Oracle Java SE <7.17,6.43,5.41 - DoS
Zeta-producer Zeta Producer Desktop Cms - Unrestricted File Upload
CVSS 9.8
Zend Framework < 1.11.12 - XXE
CVSS 9.1
Rejected
WordPress Core 3.1.3 - SQL Injection
Wago 762-3000 Firmware < 02 - XSS
CVSS 5.4
WebTitan <4.04 - SQL Injection
Westerndigital Arkeia Virtual Appliance Firmware - Path Traversal
Symantec Web Gateway < 5.1 - OS Command Injection
Shopizer <1.1.5 - XSS
Pimcore - XSS
CVSS 5.4
OpenEMR 5.0.0 - OS Command Injection / Cross-Site Scripting
OpenEMR 5.0.0 - OS Command Injection / Cross-Site Scripting
OpenProject <8.3.2 - SQL Injection
CVSS 8.1
Magento eCommerce - Local File Disclosure
LimeSurvey <3.17.14 - XSS
CVSS 5.4