Yuri Kuznetsov
7 exploits
Active since Dec 2023
EspoCRM < 9.0.7 - Exposure of Sensitive Information via User Password Hash Sorting
CVSS 3.1
EspoCRM <8.0.5 - Server-Side Request Forgery via Image URL Upload
CVSS 5.3
EspoCRM < 8.1.2 - Open Redirect via Password Change Page
CVSS 5.9
EspoCRM < 9.0.8 - Authenticated HTML Injection in Knowledge Base Articles
CVSS 8.5
EspoCRM < 9.0.7 - Exposure of Sensitive Information via User Password Hash Sorting
CVSS 3.1
EspoCRM < 9.1.7 - Unauthenticated Blind LDAP Injection via Wildcard Character
CVSS 6.5
EspoCRM < 9.1.7 - Denial of Service via Double Slash URL Path
CVSS 4.5