h00die-gr3y
52 exploits
Active since Sep 2014
Netis Router Exploit Chain Reactor (CVE-2024-48455, CVE-2024-48456 and CVE-2024-48457).
CVSS 2.7
TerraMaster TOS 4.2.29 or lower - Unauthenticated RCE chaining CVE-2022-24990 and CVE-2022-24989
CVSS 7.5
Terra-master Terramaster Operating System - OS Command Injection
CVSS 9.8
Netis - Info Disclosure
CVSS 7.5
Terramaster F4-210, F2-210 TOS 4.2.X - Info Disclosure
CVSS 8.1
TerraMaster TOS 4.2.15 or lower - RCE chain from unauthenticated to root via session crafting.
CVSS 9.8
Terra-master Terramaster Operating System - OS Command Injection
CVSS 9.8
Hikvision Ds-2cd2032-i Firmware - Authentication Bypass
CVSS 9.8
Acronis Cyber Backup - Improper Privilege Management
CVSS 8.8
Hikvision Ds-2cd2032-i Firmware - Authentication Bypass
CVSS 9.8
Geoserver unauthenticated Remote Code Execution
CVSS 9.8
Gambio - Insecure Deserialization
CVSS 9.8
Openmediavault - Access Control
CVSS 8.8
Acronis Cyber Backup - Improper Privilege Management
CVSS 8.8
Openfire authentication bypass with RCE plugin
CVSS 8.6
Gibbon <26.0.00 - Code Injection
CVSS 8.8
Monitorr - Unrestricted File Upload
CVSS 9.8
SugarCRM unauthenticated Remote Code Execution (RCE)
CVSS 8.8
WordPress File Manager Advanced Shortcode <2.3.2 - RCE
CVSS 9.8
ManageEngine ADSelfService Plus Unauthenticated SAML RCE
CVSS 9.8
Dlink Dir-816l Firmware - OS Command Injection
CVSS 9.8
Totolink X5000r Firmware - OS Command Injection
CVSS 9.8
Pandora FMS authenticated command injection leading to RCE via LDAP using default DB password
CVSS 9.8
Flir Ax8 Firmware < 1.46.16 - OS Command Injection
CVSS 9.8
Optergy Proton/Enterprise - RCE
CVSS 9.8