SimoesCTT
27 exploits
Active since Apr 2014
Mailpit < 1.28.3 - SMTP Header Injection via RCPT TO and MAIL FROM Address Validation
Microsoft 365 Apps and Office - Security Feature Bypass via Untrusted Input
Microsoft 365 Apps and Office - Security Feature Bypass via Untrusted Input
Microsoft 365 Apps and Office - Security Feature Bypass via Untrusted Input
Apple watchOS <26.2 - Code Injection
code-projects BloodBank Managing System get_state.php sql injection
CVSS 6.3
Apache HTTP Server: mod_auth_digest timing attack
CVSS 4.8
PX4 Autopilot: Stack-based Buffer Overflow via Oversized Path Input in MAVLink Log Request Handling
CVSS 6.5
Palo Alto Networks PAN-OS Unauthenticated Remote Code Execution
CVSS 10.0
glibc >=2.36 - Heap-based Buffer Overflow in __vsyslog_internal
CVSS 8.4
Langflow has Unauthenticated Remote Code Execution via Public Flow Build Endpoint
CVSS 9.8
Mailpit < 1.28.3 - SMTP Header Injection via RCPT TO and MAIL FROM Address Validation
CVSS 5.3
Serverless Framework 4.29.0-4.29.3 - Remote Code Execution via MCP Server Input Injection
CVSS 7.5
Fortinet FortiAnalyzer 7.0.0-7.0.15, 7.2.0-7.2.11, 7.4.0-7.4.9, 7.6.0-7.6.5 - Authentication Bypass via FortiCloud SSO
CVSS 9.8
Desktop Windows Manager - Info Disclosure
CVSS 5.5
Desktop Windows Manager - Info Disclosure
CVSS 5.5
Mailpit < 1.28.3 - SMTP Header Injection via RCPT TO and MAIL FROM Address Validation
CVSS 5.3
Fortinet FortiAnalyzer 7.0.0-7.0.15, 7.2.0-7.2.11, 7.4.0-7.4.9, 7.6.0-7.6.5 - Authentication Bypass via FortiCloud SSO
CVSS 9.8
Rejected
Apple watchOS <26.2 - Code Injection
CVSS 8.8
iPadOS < 16.7.8 - Memory Corruption via Improved Validation Bypass
CVSS 7.8
Rejected
Dirty Pipe Local Privilege Escalation via CVE-2022-0847
CVSS 7.8
Microsoft Exchange ProxyLogon RCE
CVSS 9.1
Microsoft Exchange ProxyLogon RCE
CVSS 9.1