SecPod Research
25 exploits
Active since May 1999
Sphinx Software Mobile Web Server 3.1.2.47 - XSS
NetMechanica NetDecision < 4.5.1 - Unauthenticated Source Code Exposure via Invalid Version Number
NetMechanica NetDecision < 4.5.1 - Information Disclosure via Trailing Question Mark
Ipswitch TFTP Server 1.0.0.24 - Path Traversal via RRQ Filename Field
FitNesse Wiki <20140201 - Command Injection
CiscoKits 1.0 - TFTP Server Directory Traversal
Bisonware FTP Server < 4.1 - Buffer Overflow via Long USER LIST or CWD Commands
NetMechanica NetDecision < 4.5.1 - Denial of Service via Long URL
Oxide WebServer 2.0.4 - Denial of Service
OfficeSIP Server 3.1 - Denial of Service via Crafted SIP INVITE To Header
NetSarang Xlpd and Xmanager Enterprise - Denial of Service via Malformed LPD Request
Hillstone HS TFTP Server 1.3.2 - Denial of Service via Long Filename in RRQ or WRQ Operation
CiscoKits 1.0 - TFTP Server 'Write Command' Denial of Service
Xataface WebAuction and Xataface Librarian DB - Multiple Vulnerabilities
openEngine 2.0 100226 - Local File Inclusion / Cross-Site Scripting
MYRE Real Estate Software - SQL Injection
Micro CMS 1.0 b1 - Persistent Cross-Site Scripting
Micro CMS 1.0 - 'name' HTML Injection (2)
iBoutique 4.0 - 'key' SQL Injection
ArticleSetup - Multiple Persistence Cross-Site Scripting / SQL Injections
appRain Quick Start Edition Core Edition Multiple 0.1.4-Alpha - Cross-Site Scripting
Apache Struts 1.3.10 - Cross-Site Scripting via Name or Message Parameter
OpenSSH < 7.3 - Denial of Service via Long Password String
CVSS 7.5
Avaya IP Office Manager TFTP Server 8.1 - Directory Traversal
Advantech WebAccess < 7.1 - Authenticated Cross-Site Scripting