h00die
198 exploits
Active since Jul 1997
Rejected
Visual Studio Code < 1.72.1 - Remote Code Execution
CVSS 7.8
NetBSD <7.0 - Local Privilege Escalation
CVSS 7.8
WordPress Pie Register <3.7.1.4 - Auth Bypass
Plex Media Server < 1.19.3 - Authenticated Remote Code Execution via Unpickle Deserialization
CVSS 7.2
Allwinner linux-3.4-sunxi - Local Privilege Escalation via sunxi_debug Procfs Interface
CVSS 7.8
GitKraken GitLens < 14.0.0 - Remote Code Execution via Workspace Trust Component
CVSS 7.8
Remote Mouse Server <4.110 - Command Injection
CVSS 9.8
Remote Control Server 3.1.1.12 - RCE
Necta WiFi Mouse Server - Remote Code Execution via Client-Side Authentication Bypass
CVSS 9.8
Unified Remote < 3.11.0.2483 - Unauthenticated Remote Code Execution via Web Management Interface
CVSS 9.8
RPA Technology Mobile Mouse 3.6.0.4 - RCE
CVSS 9.8
CAYIN xPost - Unauthenticated SQL Injection via wayfinder_seqid Parameter
CVSS 10.0
Apache Tika <1.18 - Command Injection
CVSS 8.1
NorthStar C2 XSS to Agent RCE
CVSS 8.8
Panda Security Products <16.1.2 - Code Injection
Apache OFBiz < 18.12.10 - Unauthenticated Remote Code Execution via XML-RPC
CVSS 9.8
Netcore and Netis Router Firmware - Unauthenticated Remote Code Execution via UDP Port 53413 Backdoor
Asterisk < 18.24.2 - Remote Code Execution
CVSS 7.4
Apache NiFi 0.0.2-1.21.0 - Authenticated Remote Code Execution via H2 JDBC Database URL
CVSS 8.8
Rejected
Apache mod_cgi Bash Environment Variable Code Injection (Shellshock)
CVSS 9.8
tiagorlampert CHAOS 5.0.1 - Cross-Site Scripting via sendCommandHandler
CVSS 4.8
Kibana Timelion Prototype Pollution RCE
CVSS 10.0
Metabase < 0.46.6.1 and < 1.46.6.1 - Unauthenticated Remote Code Execution
CVSS 9.8