hdm
397 exploits
Active since Jan 1997
Cisco Catalyst 3500 XL - Unauthenticated Remote Code Execution via /exec/ Directory
Energizer DUO USB - Remote Code Execution via TCP Port 7777
Fujitsu M10 Firmware < 2290 - Unauthenticated Password Hash Exposure via IPMI RAKP HMAC
CVSS 7.5
miniupnpd < 1.4 - Denial of Service via Crafted SSDP Request
Oracle Java SE JDK/JRE 7/6u27/5.0u31/1.4.2_33 & JRockit R28.1.4 - RCE via RMI
Intel AMT Digest Authentication Bypass Scanner
CVSS 9.8
Supermicro BMC - Unauthenticated IPMI Command Execution via Cipher Zero
GNU inetutils < 1.9 - Remote Code Execution via Long Encryption Key
HP-UX - Unauthenticated Remote Login via Default Null Password
Supermicro IPMI < SMT_X9_315 Authenticated Path Traversal via url_redirect.cgi
CVSS 4.3
Router/FW - Info Disclosure
Accellion File Transfer Appliance < fta_9_11_200 - Path Traversal via Statecode Cookie
CVSS 7.5
HP-UX - Unauthenticated Remote Login via Default Null Password
Ruby on Rails 2.3.x-2.3.15 and 3.0.x-3.0.19 - Remote Code Execution via YAML Deserialization
Ruby on Rails JSON Processor YAML Deserialization Code Execution
Juniper ScreenOS 6.2.0r15-6.2.0r18, 6.3.0r12-6.3.0r20 - Remote Admin Access via Hardcoded Password
CVSS 9.8
BIND < 9.5.0-P1, 9.4.2-P1, 9.3.5-P1 - DNS Cache Poisoning via Insufficient Transaction ID and Source Port Entropy
CVSS 6.8
OpenSSL 1.0.1-1.0.1f - Out-of-bounds Read via Heartbeat Extension
CVSS 7.5
Windows WPAD - Network Traffic Redirection via Proxy Discovery
CVSS 9.8
BIND < 9.5.0-P1, 9.4.2-P1, 9.3.5-P1 - DNS Cache Poisoning via Insufficient Transaction ID and Source Port Entropy
CVSS 6.8
UnrealIRCd 3.2.8.1 - Remote Code Execution via Trojaned DEBUG3_DOLOG_SYSTEM Macro
HP-UX 10.20-11.11 - Buffer Overflow in lp Subsystem
GNU Wget < 1.16 - Absolute Path Traversal via FTP LIST Response Symlink Handling
distcc 2.x - Remote Code Execution
W3 Total Cache < 0.9.2.8 - Remote PHP Code Execution
CVSS 9.8