dannyEndorTest
11 exploits
Active since Mar 2013
Apache Rave 0.11-0.20 - Authenticated Sensitive Information Exposure via User RPC API
traceroute < 1.0.0 - Remote Command Injection via Host Parameter
CVSS 10.0
Apache Tomcat <6.0.45-9.0.0.M2 - Privilege Escalation
CVSS 8.8
Context.FileAttachment - Info Disclosure
CVSS 4.3
InvokeAI v5.0.1 - Unauthenticated Denial of Service via Multipart Boundary Processing
CVSS 7.5
ollama 0.3.14 - Denial of Service via Gzip Bomb HTTP Response
CVSS 7.5
http-server-node - Path Traversal via --path-as-is
CVSS 7.5
node-prompt-here <= 1.0.1 - OS Command Injection via getDevices Function
CVSS 9.8
InvokeAI v5.0.1 - Unauthenticated Denial of Service via Multipart Boundary Processing
CVSS 7.5
ollama 0.3.14 - Denial of Service via Gzip Bomb HTTP Response
CVSS 7.5
glot-www < 2018-05-19 - Remote Code Execution via Python Files Content JSON
CVSS 9.8