ianxtianxt
23 exploits
Active since Jan 2017
Red Hat Data Grid - Remote Code Execution via Deserialization of Untrusted Data
Citrix ADC (NetScaler) Directory Traversal Scanner
Apache Axis 1.4 - Server-Side Request Forgery
Oracle WebLogic Server 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0 - Authenticated Remote Code Execution via T3
FusionAuth <1.11.0 - Command Injection
nostromo_nhttpd <= 1.9.6 - Remote Code Execution via Directory Traversal in http_verify
Oracle WebLogic Server 10.3.6.0.0 and 12.1.3.0.0 - Unauthenticated Remote Code Execution via HTTP
WordPress < 4.9.2 - Unauthenticated Denial of Service via Repeated JavaScript File Loading
Oracle WebLogic Server 10.3.6.0, 12.1.3.0, 12.2.1.0-12.2.1.2 - Unauthenticated OS Command Injection via HTTP
Oracle WebLogic Server <12.2.1.3 - RCE
Oracle WebLogic wls-wsat Component Deserialization RCE
GoAhead <v5.0.1,v4.1.1,v3.6.5 - Code Injection
Jira Server 7.6.0-8.3.9 - Server-Side Request Forgery via Gadgets MakeRequest Endpoint
Apache Tomcat 7.0.0-7.0.79 - Unauthenticated Remote Code Execution via JSP Upload
Webmin <= 1.920 - OS Command Injection via password_change.cgi Old Parameter
CVSS 9.8
PHP 7.1.x < 7.1.33, 7.2.x < 7.2.24, 7.3.x < 7.3.11 - Remote Code Execution via FPM Buffer Overflow
CVSS 8.7
Harbor 1.7.0-1.8.2 - Privilege Escalation
CVSS 6.5
nostromo nhttpd < 1.9.6 - Denial of Service via SSL_accept Memory Error
CVSS 7.5
Oracle WebLogic Server <12.2.1.3 - RCE
CVSS 5.5
Oracle WebLogic Server <12.2.1.3 - RCE
CVSS 9.8
Oracle WebLogic Server <12.2.1.1 - RCE
CVSS 9.8
Apache Tomcat , 7.x , 8.x , 8.5.x , 9.x <6.0.48 <7.0.73 <8.0.39 <8.5.7 - Remote Code Execution
CVSS 9.8
GitBook < 2.6.9 - Stored Cross-Site Scripting via Local Markdown File
CVSS 5.4