brokendreamsclub
9 exploits
Active since Dec 2018
Contact Form 7 <= 1.3.8.9 - Unauthenticated Arbitrary File Upload
FreePBX 15.0-15.0.65 - Unauthenticated Authentication Bypass and Remote Code Execution
Sitecore XM/X <10.5 - Cache Poisoning
Sitecore XP 9.0-9.3, 10.0-10.4 - RCE via Untrusted Deserialization
CVSS 8.8
Sitecore Experience Manager and Experience Platform 9.2-10.4 - Exposure of Sensitive Information
CVSS 7.5
Sitecore XP 9.0-9.3, 10.0-10.4 - RCE via Untrusted Deserialization
CVSS 8.8
Sitecore Experience Manager and Experience Platform 9.2-10.4 - Exposure of Sensitive Information
CVSS 7.5
CrushFTP 10.0.0-10.8.4 and 11.0.0-11.3.3 - Unauthenticated Remote Admin Access via AS2 Validation Bypass
CVSS 9.0
GIGABYTE APP Center <v1.05.21 - Info Disclosure
CVSS 9.8