XiaomingX
190 exploits
Active since Oct 2024
TCS Cognix Recon Client 3.0 - Privilege Escalation
TCS Cognix Recon Client 3.0 - Privilege Escalation
TCS Cognix Recon Client 3.0 - Auth Bypass
Red Hat Enterprise Linux - Local Privilege Escalation via libblockdev XFS Image Resizing
Qualcomm Memory Allocation Alignments Firmware - Memory Corruption
FreeScout < 1.8.206 - Authenticated Remote Code Execution via .htaccess Upload
All-in-One Microsoft 365 & Entra ID / Azure AD SSO Login <2.2.5 - Authentication Bypass
Juniper Junos OS Evolved 25.4-25.4R1-S1-EVO, 25.4R2-EVO - Remote Code Execution via Anomaly Detection
ChatterBot < 1.2.11 - Denial of Service via SQLAlchemy Connection Pool Exhaustion
MaxSite CMS <109.1 - Code Injection
Windows SMB - Authenticated Privilege Escalation via Improper Access Control
MajorDoMo - Unauthenticated SQL Injection
Google Android - Heap Buffer Overflow
GNU inetutils <=2.7 - Privilege Escalation
Google Cloud Vertex AI SDK 1.98.0-1.131.0 - XSS
10 stars
AirPlay Audio and Video SDK < 2.7.1 and < 3.6.0.126 - Denial of Service via Memory Corruption
User Profile Builder <3.15.2 - Info Disclosure
Cisco Catalyst SD-WAN - Auth Bypass
Mailpit < 1.28.3 - SMTP Header Injection via RCPT TO and MAIL FROM Address Validation
WeGIA < 3.6.2 - Authenticated SQL Injection via Atendido_ocorrenciaControle id_memorando Parameter
TP-Link VIGI C385 V1 - Buffer Overflow
Modular DS <= 2.5.1 - Incorrect Privilege Assignment
vllm 0.10.1-0.13.0 - Remote Code Execution via Hugging Face auto_map Dynamic Module Loading
Slider Future <= 1.0.5 - Unauthenticated Arbitrary File Upload via slider_future_handle_image_upload
vaahcms 2.3.1 - Cross-Site Scripting via UserBase.php storeAvatar() Upload Method