Spencer McIntyre
131 exploits
Active since Mar 1998
Windows 10 1903/1909 and Windows Server 1903/1909 - Remote Code Execution via SMBv3 Compression Buffer Overflow
polkit < 0.119 - Unauthenticated Privilege Escalation via D-Bus Request
Liferay Portal 5.1.0-5.1.1 and 5.0.0-6.0.5 - Remote Code Execution in XSL Content Portlet
1 stars
Telerik Report Server Auth Bypass and Deserialization RCE
CVSS 9.8
pyload-ng v0.5.0b3.dev85 - Remote Code Execution via Crafted HTTP Request
CVSS 9.8
bindata < 2.4.10 - Denial of Service via Slow Bit Class Creation
CVSS 3.7
crypto: algif_aead - Revert to operating out-of-place
CVSS 7.8
ManageEngine OpManager SumPDU Java Deserialization
CVSS 9.8
Microsoft Exchange ProxyShell RCE
CVSS 9.1
Telerik UI ASP.NET AJAX RadAsyncUpload Deserialization
CVSS 9.8
Microsoft Exchange Server - Security Feature Bypass via Unrestricted File Upload
CVSS 6.6
Apache Struts 2.0.0-2.5.20 - Remote Code Execution via Forced Double OGNL Evaluation
CVSS 9.8
Microsoft Exchange ProxyNotShell RCE
CVSS 8.8
PyTorch Model Server Registration and Deserialization RCE
CVSS 8.3
Windows 10 1803-20H2 and Windows Server 1909-20H2 - Elevation of Privilege via Win32k ConsoleControl Offset Confusion
CVSS 7.8
Windows Shell - Remote Code Execution via Crafted .LNK File
CVSS 8.8
Windows Print Spooler - Remote Code Execution via Privileged File Operations
CVSS 8.8
OpenPrinting libppd - Unsanitized IPP Attribute Code Execution
CVSS 8.6
Rejected
libcupsfilters < 2.0.0 - Improper Input Validation in cfGetPrinterAttributes5
CVSS 8.6
Rejected
Rejected
Rejected
Apache mod_cgi Bash Environment Variable Code Injection (Shellshock)
CVSS 9.8
Rejected