dinosn
15 exploits
Active since Jan 2019
Vmware Spring Cloud Function < 3.1.6 - Remote Code Execution
Oracle Weblogic Server - Improper Access Control
Oracle WebLogic Server <14.1.1.0.0 - RCE
Citrix Netscaler Application Delivery Controller - Memory Corruption
Ghost 3.24.0-6.19.0 - Info Disclosure
PackageKit vulnerable to TOCTOU Race on Transaction Flags leads to arbitrary package installation as root
Apache ActiveMQ Broker, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeans
Apache MINA: AbstractIoBuffer.resolveClass() null-clazz Branch Skips acceptMatchers Filter — Full Object Deserialization RCE (take 2)
Zeromq Libzmq < 4.2.5 - Integer Overflow
CVSS 8.8
ProFTPD <1.3.10rc1 - RCE
CVSS 8.1
Apache Camel: CoAP URI Query Parameter to Exchange Header Injection in camel-coap Allows Single-Packet Pre-Auth Remote Code Execution
CVSS 10.0
Apache Camel Mina: Unsafe Deserialization in MinaConverter.toObjectInput() via TCP/UDP
CVSS 8.8
Apache Camel: Camel-Infinispan: Unsafe Deserialization in Remote Aggregation Repository
CVSS 8.8
Breeze Cache <= 2.4.4 - Unauthenticated Arbitrary File Upload via fetch_gravatar_from_remote
CVSS 9.8
Oracle WebLogic Server <14.1.1.0.0 - RCE
CVSS 7.2