hev0x
9 exploits
Active since Nov 2018
Atlassian Confluence Server and Data Center - OGNL Injection
Confluence - Remote Code Execution
wpDiscuz 7.0-7.0.4 - Unauthenticated Remote Code Execution via File Upload
ScadaBR < 0.9.1 - Authenticated Arbitrary JSP File Upload via view_edit.shtm
Subrion CMS < 4.2.2 - Remote Code Execution via .pht or .phar File Upload
WSO2 Arbitrary File Upload to RCE
OpenPLC Webserver v3 - Remote Code Execution via Hardware Layer Code Box
ZeroShell 3.9.0 - Unauthenticated Remote Command Execution via HTTP Parameter Injection
Swagger UI < 4.1.3 - Server-Side Request Forgery via OpenAPI Definition URL
CVSS 4.3