andikahilmy
165 exploits
Active since Aug 2013
Netty < 3.9.2 - Denial of Service via SSLv2Hello Message
Apache Commons FileUpload <1.3.1 - DoS
JBPM KIE Workbench 6.0.x - Authenticated Cross-Site Scripting via Task Name HTML Input
CVSS 5.4
OWASP Enterprise Security API 2.0-2.1.0 - Authenticated Encryption Bypass via Ciphertext Tampering
OWASP Enterprise Security API for Java 2.x < 2.1.0 - Authenticated-Encryption Bypass via Null MAC
Apache Santuario XML Security for Java <1.5.6 - DoS
Redhat Jboss Enterprise Brms Platform - Improper Input Validation
Apache Santuario XML Security for Java <1.4.8/1.5.5 XML Signature Spoofing
Apache CXF <2.7.18, <3.0.7, <3.1.3 - Auth Bypass
Apache Tika Server < 1.10 - Exposure of Sensitive Information via HTTP fileUrl Header
CVSS 5.3
OrientDB Server Community Edition <2.0.15 and 2.1.x <2.1.1 - Information Disclosure
CVSS 5.9
OrientDB Server Community Edition <2.0.15 & <2.1.x - CSRF
CVSS 8.8
Netty Cookie HttpOnly Flag Bypass via Improper Input Validation
CVSS 7.5
WildFly Directory Traversal
Keycloak < 1.0.3 - Denial of Service via Large QR Code Size Parameter
CVSS 7.5