h00die
183 exploits
Active since Jul 1997
Aerohive NetConfig 10.0r8a LFI and log poisoning to RCE
Apache Nifi < 1.22.0 - Code Injection
Chaos RAT XSS to RCE
CVSS 8.8
Overlayfs Privilege Escalation
CVSS 6.7
Polycom Hdx System Software < 3.0.5 - Hard-coded Credentials
CVSS 9.8
Unitrends UEB http api remote code execution
CVSS 9.8
Pi-hole Web interface <5.5.1 - Code Injection
CVSS 7.6
GitLab Password Reset Account Takeover
CVSS 10.0
Wordpress POST SMTP Account Takeover
CVSS 9.8
Debut embedded http server - DoS
CVSS 7.5
WordPress Automatic <3.53.2 - Info Disclosure
CVSS 9.1
MasterStudy LMS <2.7.6 - Info Disclosure
CVSS 9.8
Strapi CMS Unauthenticated Password Reset
CVSS 9.8
Automattic Woocommerce Payments < 4.8.2 - Authentication Bypass
CVSS 9.8
Grafana Plugin Path Traversal
CVSS 7.5
Dicoogle PACS Web Server <2.5.0 - Path Traversal
Idangero Chop Slider - SQL Injection
CVSS 9.8
LimeSurvey Zip Path Traversals
CVSS 9.8
WordPress Modern Events Calendar SQLi Scanner
CVSS 9.8
Strangerstudios Paid Memberships Pro < 2.9.8 - SQL Injection
CVSS 9.8
Icinga Web 2 <2.9.5 - Info Disclosure
CVSS 7.5
Wordpress RegistrationMagic task_ids Authenticated SQLi
CVSS 7.2
Joomla! < 4.2.8 - Improper Access Control
CVSS 5.3
Wordpress Secure Copy Content Protection and Content Locking sccp_id Unauthenticated SQLi
CVSS 9.8
Unix - Info Disclosure