gh-ost00
16 exploits
Active since Jan 2024
PHP CGI Argument Injection Remote Code Execution
WordPress Ultimate Member SQL Injection (CVE-2024-1071)
SolarWinds Web Help Desk - Hardcoded Credential
fastadmin < 1.3.4.20220530 - Path Traversal via /index/ajax/lang lang Parameter
SPIP porte_plume - Unauthenticated PHP Code Execution
Raisecom MSG1200, MSG2100E, MSG2200, MSG2300 3.90 - OS Command Injection via list_base_config.php template parameter
Traccar - Unrestricted File Upload
spider-flow 0.4.3 - Remote Code Execution via FunctionService.saveFunction
Progress Telerik Report Server < 10.0.24.130 - Remote Code Execution via Insecure Deserialization
ServiceNow Vancouver and Washington DC - Unauthenticated Remote Code Execution
Telerik Report Server Auth Bypass and Deserialization RCE
WP Automatic <3.92.0 - Path Traversal
SEH Computertechnik utnserver Pro, ProMAX, INU-100 < 20.1.22 - Stored Cross-Site Scripting
3 stars
SourceCodester Online Eyewear Shop 1.0 - Improper Ownership Management
GitLab Password Reset Account Takeover
InstaWP Connect < 0.1.0.38 - Unauthenticated Arbitrary Option Update via REST API
CVSS 9.8