Spencer McIntyre
132 exploits
Active since Mar 1998
pyload-ng js2py - Remote Code Execution
CVSS 5.3
Apache Superset <= 2.1.0 - SQLite Database Connection Manipulation via Alternative Driver Names
CVSS 3.8
Log4Shell HTTP Header Injection
CVSS 10.0
QNAP QTS 5.1.0-5.1.5.2645 and QuTS hero h5.1.0-h5.1.5.2647 and QuTScloud c5.0.0.1919-c5.1.5.2651 - OS Command Injection
CVSS 5.8
Apache OFBiz SOAP Java Deserialization
CVSS 9.8
PowerShellEmpire Arbitrary File Upload (Skywalker)
CVSS 9.8
Sourcegraph gitserver sshCommand RCE
CVSS 8.8
F5 BIG-IP 13.1.0-13.1.4 - Unauthenticated Remote Command Execution via Configuration Utility Bypass
CVSS 9.8
Docker Container Escape Via runC Overwrite
CVSS 8.6
polkit < 0.119 - Unauthenticated Privilege Escalation via D-Bus Request
CVSS 7.8
Sudo Heap-Based Buffer Overflow
CVSS 7.8
VMware Workspace ONE Access CVE-2022-31660
CVSS 7.8
Citrix NetScaler ADC and Gateway - Unauthenticated Remote Code Execution
CVSS 9.8
Razer Synapse <2.20.15.1104 - Privilege Escalation
CVSS 9.8
Microsoft Windows XP SP3 - Privilege Escalation
.NET Framework - Remote Code Execution via XML Injection
CVSS 9.8
MyLittleAdmin 3.8 - Unauthenticated Remote Code Execution via Hardcoded MachineKey
CVSS 9.8
Lianja SQL Server < 1.0 - Stack-Based Buffer Overflow via TCP Port 8001
Microsoft Exchange Server - Remote Code Execution via Memory Corruption
CVSS 8.8
Microsoft Windows XP/Server 2003 - Privilege Escalation
CVSS 7.8
Microsoft Word <2013 - Memory Corruption
CVSS 7.8
Windows 7 SP1 and Windows Server 2008 R2 SP1 - Local Privilege Escalation via Win32k NULL Page
Microsoft Windows - Privilege Escalation
CVSS 7.8
Firebird <2.1.5-2.5.3 - Buffer Overflow
LifeSize Room Appliance Software - Remote Code Execution via gateway.php LSRoom_Remoting.doCommand