XiaomingX
190 exploits
Active since Oct 2024
Slider Future <= 1.0.5 - Unauthenticated Arbitrary File Upload via slider_future_handle_image_upload
TP-Link VIGI C385 V1 - Buffer Overflow
CleanTalk Spam Protection <= 6.71 - Unauthenticated Arbitrary Plugin Installation via DNS Spoofing
WordPress Lazy Blocks <4.2.0 - Authenticated RCE
AdForest theme <6.0.12 - Auth Bypass
BeyondTrust Privileged Remote Access < 25.1 and Remote Support < 25.3.2 - Unauthenticated Remote Code Execution
PixelYourSite Pro < 12.4.0.2 - Stored XSS via pysTrafficSource and pys_landing_page
Google Chrome <144.0.7559.132 - Heap Corruption
Nukegraphic CMS 3.1.2 - Authenticated Stored Cross-Site Scripting in User Profile Name Field
10 stars
Cisco Unified Communications Manager - RCE
MediaTek Modem - Input Validation Denial of Service
Apple watchOS <26.3 - Memory Corruption
Windows Notepad App - Command Injection
yuan1994 tpadmin <1.3.12 - Deserialization
Magic Login Mail or QR Code <2.05 - Privilege Escalation
AdonisJS bodyparser <10.1.2, 11.0.0-next.0-6 - Path Traversal & Arbitrary File Write
10 stars
Microsoft 365 Apps and Office - Security Feature Bypass via Untrusted Input
Microsoft Windows Shell - Protection Mechanism Failure
Azure Conversation Authoring Client Library - Remote Code Execution via Untrusted Data Deserialization
Windows 10/11 Remote Desktop Authenticated Privilege Escalation
Tassos Framework Plugin - Auth Bypass
10 stars
Grafana Dashboard Permissions API - Privilege Escalation
n8n 1.65.0-1.120.9 - Unauthenticated Arbitrary File Read via Form-Based Workflow Execution
OWASP CRS <4.22.0-3.3.8 - Info Disclosure
Oracle HTTP Server & WebLogic Proxy Plug-in 12.2.1.4.0/14.1.1.0.0/14.1.2.0.0 - Unauthenticated Access Control