fuzzlove-group
6 exploits
Active since May 2019
Cisco ASA 9.6-9.6.4.42 & FTD 6.2.3-6.2.3.16 Unauthenticated Path Traversal
CVSS 7.5
FUDForum 3.0.9 - Stored Cross-Site Scripting and Remote Code Execution via nlogin Parameter
CVSS 9.0
FUDForum 3.0.9 - Stored Cross-Site Scripting and Remote Code Execution via User-Agent Header
CVSS 9.0
elabftw 1.8.5 - Authenticated Arbitrary File Upload via EntityController
CVSS 8.8
ATutor 2.2.1-2.2.4 - Path Traversal and Arbitrary File Upload via Language Import ZIP Archive
CVSS 8.8
ATutor <= 2.2.4 - Authenticated Arbitrary File Upload via Backup ZIP Archive
CVSS 8.8