adminlove520
199 exploits
Active since Jan 2024
Docker Desktop - Privilege Escalation
2 stars
ThrottleStop.sys - Privilege Escalation
2 stars
TOTOLINK LR350 <= 9.3.5u.6369 - Authorization Bypass via authCode Parameter
FortiOS/FortiProxy Out-of-bounds Write Vulnerability
Fortinet FortiOS/FortiProxy/FortiPAM/FortiSwitchManager Format String Vulnerability via Crafted Packets
xz <5.6.0 - Code Injection
Gogs < 0.13.0 - Authenticated Remote Code Execution via SSH --split-string Argument Injection
CrushFTP < 10.7.1 - Unauthenticated Server-Side Template Injection
ImageMagick 7.0.11-13-7.1.1-36 - Uncontrolled Search Path Element via MAGICK_CONFIGURE_PATH and LD_LIBRARY_PATH
Homepage 0.9.1 - Unauthenticated Information Disclosure via DNS Rebinding
Moodle Remote Code Execution (CVE-2024-43425)
WordPress TI WooCommerce Wishlist SQL Injection (CVE-2024-43917)
PHP CGI Argument Injection Remote Code Execution
AMI MegaRAC SP-X 12-12.7 - Unauthenticated Authentication Bypass via Redfish Host Interface
Google Chrome < 128.0.6613.84 - Out of Bounds Memory Access in Skia
Google Chrome <128.0.6613.113 - Buffer Overflow
Google Chrome <128.0.6613.113 - Buffer Overflow
Google Chrome <128.0.6613.137 - Buffer Overflow
Grafana 11.0.0-11.0.5 - Authenticated Command Injection via DuckDB SQL Expressions
7-Zip 24.09 - Mark-of-the-Web Bypass Code Execution
Samba Active Directory WINS Hook - Remote Command Execution
Cloud Jasperreports IO < 4.0.0 - Insecure Deserialization
Eastnets PaymentSafe <2.5.26.0 - XSS
OSV-SCALIBR < 0.3.4 - Denial of Service via Filesystem Traversal Fallback Path
2 stars
deco-cx apps <= 0.120.1 - Server-Side Request Forgery via AnalyticsScript URL Parameter