andikahilmy
165 exploits
Active since Aug 2013
FasterXML jackson-databind <2.9.10.6 - RCE
CVSS 8.1
jackson-databind 2.6.0-2.6.7.3 - XML External Entity Injection
CVSS 7.5
XStream < 1.4.14 - Remote Code Execution via Blocklist Bypass
CVSS 8.0
jackson-databind 2.7.0-2.7.9.6 - Deserialization of Untrusted Data via javax.swing.JEditorPane
CVSS 8.8
Apache ZooKeeper 1.0.0-3.4.13 and 3.5.0-alpha-3.5.4-beta - Unauthenticated Information Disclosure via getACL() Command
CVSS 5.9
Openfire < 4.4.2 - Path Traversal via PluginServlet.java
CVSS 5.3
jackson-databind 2.0.0-2.9.10 - Remote Code Execution via Polymorphic Typing with Log4j JNDI
CVSS 9.8
Ignite Realtime Openfire < 4.4.2 - Server-Side Request Forgery via FaviconServlet
CVSS 9.8
jackson-databind 2.0.0-2.9.10 - Remote Code Execution via P6Spy Default Typing
CVSS 9.8
FasterXML jackson-databind < 2.9.10 - Deserialization of Untrusted Data via EhcacheJtaTransactionManagerLookup
CVSS 9.8
Netapp Snapcenter < 2.7.9.7 - Insecure Deserialization
CVSS 9.8
FasterXML jackson-databind < 2.9.10 - Remote Code Execution via Xalan JNDI Gadget Deserialization
CVSS 9.8
jackson-databind < 2.6.7.3 - Remote Code Execution via Polymorphic Deserialization
CVSS 9.8
FasterXML jackson-databind <2.9.10 - Info Disclosure
CVSS 9.8
jackson-databind 2.0.0-2.9.10 - Remote Code Execution via Polymorphic Typing
CVSS 9.8
FasterXML jackson-databind <2.9.10 - Info Disclosure
CVSS 9.8
Apache Commons Compress <1.19 - DoS
CVSS 7.5
Apache Santuario XML Security for Java <2.0.3 - Info Disclosure
CVSS 5.5
jackson-databind 2.0.0-2.9.9 - Unauthenticated Arbitrary File Read via JDOM Polymorphic Typing
CVSS 5.9
FasterXML jackson-databind <2.9.9 - Code Injection
CVSS 7.5
jackson-databind < 2.9.9.2 - Remote Code Execution via Default Typing with Ehcache
CVSS 9.8
FasterXML jackson-databind <2.9.9.1 - Deserialization
CVSS 5.9
Jenkins Script Security Plugin < 1.50 - Sandbox Bypass Remote Code Execution
CVSS 8.8
Jenkins Git Plugin < 3.9.1 - Cross-Site Request Forgery in GitTagAction
CVSS 4.3
FasterXML jackson-databind <2.9.9.2 - Info Disclosure
CVSS 7.5