horizon3ai
45 exploits
Active since Feb 2021
VMware vCenter Server and Cloud Foundation - Remote Code Execution via vSphere Client Plugin
Fortinet Fortiproxy < 7.0.7 - Authentication Bypass
VMware vCenter Server and Cloud Foundation - Remote Code Execution via vSphere Client Plugin
Fortinet FortiNAC keyUpload.jsp arbitrary file write
Microsoft OMI Management Interface Authentication Bypass
F5 BIG-IP iControl RCE via REST Authentication Bypass
VMware Identity Manager Workspace ONE Access and vRealize Automation - Authentication Bypass
MOVEit SQL Injection vulnerability
ManageEngine ADSelfService Plus Unauthenticated SAML RCE
Microsoft Exchange ProxyShell RCE
Apache Superset Signed Cookie Priv Esc
Veeam Backup & Replication < 11.0.1.1261 - Unauthenticated Credential Disclosure
Fortra GoAnywhere MFT Unauthenticated Remote Code Execution
VMware Aria Operations for Logs - RCE
PaperCut MF and NG 8.0-20.1.7 - Unauthenticated Remote Code Execution via SetupCompleted
Fortinet Forticlient Endpoint Management Server - SQL Injection
Palo Alto Networks Expedition 1.2.0-1.2.95 - Authenticated OS Command Injection
ManageEngine ADAudit Plus CVE-2022-28219
Ivanti Sentry MICSLogService Auth Bypass resulting in RCE (CVE-2023-38035)
ManageEngine ServiceDesk Plus CVE-2021-44077
Fortinet FortiSIEM - OS Command Injection
FortiSIEM 6.7.0-6.7.10, 7.0.0-7.0.4, 7.1.0-7.1.8, 7.3.0-7.3.4, 7.4.0 - OS Command Injection via TCP Requests
Palo Alto Networks Expedition 1.2.0-1.2.95 - Unauthenticated SQL Injection and Arbitrary File Write
Lexmark <2023-02-19 - Info Disclosure
FortiSIEM 6.6.0-6.6.2 - OS Command Injection via Crafted API Requests