Stig Palmquist

2 exploits Active since Mar 2019
CVE-2019-6690 NOMISEC HIGH WORKING POC
python-gnupg 0.4.3 - Improper Input Validation
python-gnupg 0.4.3 allows context-dependent attackers to trick gnupg to decrypt other ciphertext than intended. To perform the attack, the passphrase to gnupg must be controlled by the adversary and the ciphertext should be trusted. Related to a "CWE-20: Improper Input Validation" issue affecting the affect functionality component.
1 stars
CVSS 7.5
CVE-2018-20162 NOMISEC CRITICAL WORKING POC
Digi TransPort LR54 <4.4.0.26 - Privilege Escalation
Digi TransPort LR54 4.4.0.26 and possible earlier devices have Improper Input Validation that allows users with 'super' CLI access privileges to bypass a restricted shell and execute arbitrary commands as root.
CVSS 9.9