dinosn
36 exploits
Active since Jan 2019
Apache Camel: CoAP URI Query Parameter to Exchange Header Injection in camel-coap Allows Single-Packet Pre-Auth Remote Code Execution
CVSS 10.0
ZeroMQ libzmq < 4.0.9, 4.1.x < 4.1.7, 4.2.x < 4.3.2 - Unauthenticated Stack Overflow via CURVE Encryption/Authentication
CVSS 9.8
libzmq 4.2.0-4.2.4 and 4.3.0 - Authenticated Integer Overflow to Remote Code Execution in v2_decoder.cpp
CVSS 8.8
ProFTPD < 1.3.10rc1 - Remote Code Execution
CVSS 8.1
Apache Camel: CoAP URI Query Parameter to Exchange Header Injection in camel-coap Allows Single-Packet Pre-Auth Remote Code Execution
CVSS 10.0
Apache Camel: Camel-Infinispan: Unsafe Deserialization in Remote Aggregation Repository
CVSS 8.8
Apache Camel Mina: Unsafe Deserialization in MinaConverter.toObjectInput() via TCP/UDP
CVSS 8.8
Breeze Cache <= 2.4.4 - Unauthenticated Arbitrary File Upload via fetch_gravatar_from_remote
CVSS 9.8
Oracle WebLogic Server <14.1.1.0.0 - RCE
CVSS 7.2
WordPress < 7.0.2 - Facilitated SQL Injection via author__not_in in WP_Query
CVSS 5.9
Apache ActiveMQ Broker, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeans
CVSS 8.8