SlidingWindow
17 exploits
Active since Sep 2013
Quest Kace K1000 <9.0.270 - Blind SQL Injection
CVSS 6.5
Quest Kace Systems Management Appliance Firmware < 9.0.270 - Authenticated Stored Cross-Site Scripting in Tickets Page
CVSS 5.4
Trend Micro InterScan Web Security Virtual Appliance < 6.5 - Incorrect Permission Assignment
CVSS 6.5
Trend Micro InterScan Web Security Virtual Appliance < 6.5 CP 1746 - Privilege Escalation via Certificate Handling
CVSS 6.5
Trend Micro IWSVA <6.5-SP2_Build_Linux_1707 - RCE
CVSS 9.9
Trend Micro IWSVA <6.5-SP2_Build_Linux_1707 - Info Disclosure
CVSS 7.8
Trend Micro IWSVA <6.5-CP-1737 - Privilege Escalation
CVSS 8.8
Microsoft Internet Explorer 6-11 - Remote Code Execution via SetMouseCapture Use-After-Free
CVSS 8.8
Sophos Web Appliance <4.3.1.2 - Session Fixation
CVSS 8.1
Quest KACE Systems Management Appliance < 9.0.270 - Unauthenticated Privilege Escalation via CORS Misconfiguration
CVSS 8.8
Persistent Systems Radia Client Automation <9.1 - RCE
Dell EMC Avamar Server 7.3.1-7.5.0 & IDPA 2.0-2.1 - Unauthenticated Credential Read/Modify via Local Download Service
CVSS 9.8
Oracle WebLogic Server 10.3.6.0, 12.1.2.0, 12.1.3.0, 12.2.1.0 - Remote Code Execution via T3 Protocol Deserialization
CVSS 9.8
D-Link DCS-936L < 1.05.07 - Cross-Site Request Forgery via Referer Header Validation Bypass
CVSS 8.8
Trend Micro InterScan Web Security Virtual Appliance < 6.5 - Stored XSS via Report Template Name
CVSS 5.4
Trend Micro IWSVA <6.5-CP-1737 - XSS
CVSS 5.4
D-Link DCS Series Cameras - Cross-Site Request Forgery via Insecure CrossDomain.XML
CVSS 8.8