jbaines-r7
29 exploits
Active since Mar 2020
Confluence - Remote Code Execution
Windows Installer - Privilege Escalation
Zyxel Firewall SUID Binary Privilege Escalation
QTS < 4.2.6 - OS Command Injection
Cisco ASA and ASDM - Authenticated Arbitrary Code Execution via Malicious ASDM Image
Cisco Adaptive Security Device Manager < 7.18.1.152 - Unauthenticated Remote Code Execution via Launcher Code Injection
WatchGuard Fireware OS <12.8.1-12.5.10 - Command Injection
Zyxel Firewall Firmware - Privilege Escalation via CLI Command
GitLab Unauthenticated Remote ExifTool Command Injection
CVSS 6.8
Spring Framework - Remote Code Execution via Data Binding
CVSS 9.8
Dell DBUtil < 2.3 - Authenticated Insufficient Access Control in IOCTL Handler
CVSS 8.8
Windows Installer - Elevation of Privilege via Improper Link Resolution
CVSS 5.5
GitLab GraphQL API User Enumeration
CVSS 5.3
pfSense Diag Routes Web Shell Upload
CVSS 8.8
Grandstream UCM62xx IP PBX WebSocket Blind SQL Injection Credential Dump
CVSS 9.8
GitLab 11.9.0-13.8.7 - Unauthenticated Remote Code Execution via ExifTool Image Parsing
CVSS 10.0
Log4Shell HTTP Header Injection
CVSS 10.0
Confluence - Remote Code Execution
CVSS 9.8
SonicWall SMA 200/210/400/410/500v Firmware - Authenticated OS Command Injection via /cgi-bin/viewcert
CVSS 8.8
Redis Lua Sandbox Escape
CVSS 10.0
Nagios XI Autodiscovery Webshell Upload
CVSS 8.8
Cisco RV Series Firmware - Unauthenticated RCE and Auth Bypass
CVSS 5.3
Hikvision IP Camera Unauthenticated Command Injection
CVSS 9.8
Log4Shell HTTP Header Injection
CVSS 10.0
Grandstream UCM6200 <1.0.19.20 - SQL Injection
CVSS 9.8