egypt
56 exploits
Active since Jan 1997
Ruby on Rails JSON Processor YAML Deserialization Code Execution
ExaGrid EX3000 Firmware - Use of Hard-coded Credentials
CVSS 9.8
phpMyAdmin < 3.1.3.2 - Remote Code Injection via ConfigFile.class.php
Rejected
Windows - Local Privilege Escalation via EPATHOBJ::pprFlattenRec Pointer Initialization
CVSS 7.8
PHP < 5.3.12 and 5.4.x < 5.4.2 - Remote Code Execution via CGI Query String
CVSS 9.8
PHP < 5.3.13 and 5.4.x < 5.4.3 - Remote Code Execution via CGI Query String
ExaGrid EX3000 Firmware - Use of Hard-coded Credentials
CVSS 9.8
osCommerce <= 2.2 RC2a - Unauthenticated Arbitrary File Upload via Admin File Manager
HP-UX - Unauthenticated Remote Login via Default Null Password
osCommerce <= 2.2 RC2a - Unauthenticated Arbitrary File Upload via Admin File Manager
Ruby on Rails 2.3.x-2.3.15 and 3.0.x-3.0.19 - Remote Code Execution via YAML Deserialization
Apache Struts 2.3.x < 2.3.32 and 2.5.x < 2.5.10.1 - Remote Code Execution via Jakarta Multipart Parser
CVSS 9.8
Apache mod_cgi Bash Environment Variable Code Injection (Shellshock)
CVSS 9.8
OpenX Ad Server 2.8.10 - Remote Code Execution via Backdoor in flowplayer-3.1.1.min.js
CVSS 9.8
phpMyAdmin 2.11.0-2.11.9.4 and 3.x < 3.1.3.1 - Remote Code Injection via Setup Configuration Save
CVSS 9.8
PHP < 5.3.12 and 5.4.x < 5.4.2 - Remote Code Execution via CGI Query String
CVSS 9.8
Pandora FMS < 3.1 - Unauthenticated Authentication Bypass via Empty loginhash_pwd
Oracle JDK 7 - Remote Code Execution via JMX MBean Instantiator and Reflection API
CVSS 9.8
Oracle Java SE/Jav for Bus <6-5.0-1.4.2 - Info Disclosure
CVSS 9.8
Oracle Java SE/Jav for Bus <6-5 - Info Disclosure
Opera - Stored Cross-Site Scripting via History Search Database
Java AtomicReferenceArray Type Violation Vulnerability
CVSS 9.8
Oracle Java SE/Jav for Bus <6 Update 21 - Info Disclosure
Apple QuickTime 7.1.3 - Remote Code Execution via Long RTSP URI