Spencer McIntyre
131 exploits
Active since Mar 1998
Apache Superset <= 2.1.0 - SQLite Database Connection Manipulation via Alternative Driver Names
CVSS 3.8
Log4Shell HTTP Header Injection
CVSS 10.0
QNAP QTS 5.1.0-5.1.5.2645 and QuTS hero h5.1.0-h5.1.5.2647 and QuTScloud c5.0.0.1919-c5.1.5.2651 - OS Command Injection
CVSS 5.8
Apache OFBiz SOAP Java Deserialization
CVSS 9.8
PowerShellEmpire Arbitrary File Upload (Skywalker)
CVSS 9.8
Sourcegraph gitserver sshCommand RCE
CVSS 8.8
Microsoft OMI Management Interface Authentication Bypass
CVSS 7.8
F5 BIG-IP 13.1.0-13.1.4 - Unauthenticated Remote Command Execution via Configuration Utility Bypass
CVSS 9.8
Docker Container Escape Via runC Overwrite
CVSS 8.6
polkit < 0.119 - Unauthenticated Privilege Escalation via D-Bus Request
CVSS 7.8
Sudo Heap-Based Buffer Overflow
CVSS 7.8
VMware Workspace ONE Access CVE-2022-31660
CVSS 7.8
Razer Synapse <2.20.15.1104 - Privilege Escalation
CVSS 9.8
Microsoft Windows XP SP3 - Privilege Escalation
.NET Framework - Remote Code Execution via XML Injection
CVSS 9.8
MyLittleAdmin 3.8 - Unauthenticated Remote Code Execution via Hardcoded MachineKey
CVSS 9.8
Lianja SQL Server < 1.0 - Stack-Based Buffer Overflow via TCP Port 8001
Microsoft Exchange Server - Remote Code Execution via Memory Corruption
CVSS 8.8
Microsoft Windows - Privilege Escalation
CVSS 7.8
Microsoft Windows XP/Server 2003 - Privilege Escalation
CVSS 7.8
Microsoft Word <2013 - Memory Corruption
CVSS 7.8
Windows 7 SP1 and Windows Server 2008 R2 SP1 - Local Privilege Escalation via Win32k NULL Page
Firebird <2.1.5-2.5.3 - Buffer Overflow
LifeSize Room Appliance Software - Remote Code Execution via gateway.php LSRoom_Remoting.doCommand
Liferay Portal 5.1.0-5.1.1 and 5.0.0-6.0.5 - Remote Code Execution in XSL Content Portlet