jheysel-r7
51 exploits
Active since Sep 2020
polkit - Privilege Escalation
Pentaho Business Server Auth Bypass and Server Side Template Injection RCE
CVSS 8.8
CosmicSting: Magento Arbitrary File Read (CVE-2024-34102) + PHP Buffer Overflow in the iconv() function of glibc (CVE-2024-2961)
CVSS 9.8
SimpleHelp Path Traversal Vulnerability CVE-2024-57727
CVSS 7.5
Salesagility Suitecrm < 7.14.1 - SQL Injection
CVSS 9.1
Glpi < 10.0.18 - SQL Injection
CVSS 7.5
Netgate Pfblockerng < 2.1.4_26 - OS Command Injection
CVSS 9.8
CVE-2024-20767 - Adobe Coldfusion Arbitrary File Read
CVSS 7.4
Wordpress BookingPress bookingpress_front_get_category_services SQLi
CVSS 9.8
Gladinet CentreStack < 16.4.10315.56368 Use of Hard-coded Key Leads to Unauthenticated RCE
CVSS 9.0
Hitachi Vantara Pentaho <9.4.0.1-9.3.0.2 - SSRF
CVSS 8.6
Atlassian Confluence Unauth JSON setup-restore Improper Authorization leading to RCE (CVE-2023-22518)
CVSS 9.8
Apache Couchdb Erlang RCE
CVSS 9.8
dotCMS 3.0-22.02 - Path Traversal
CVSS 9.8
ForgeRock AM <7.0 - Code Injection
CVSS 9.8
Smartertools Smartermail < 100.0.9413 - Unrestricted File Upload
CVSS 10.0
WordPress Backup Migration Plugin PHP Filter Chain RCE
CVSS 9.8
Apache OFBiz <18.12.13 - Path Traversal
CVSS 9.8
Apache RocketMQ update config RCE
CVSS 9.8
Geoserver unauthenticated Remote Code Execution
CVSS 9.8
pgAdmin Query Tool authenticated RCE (CVE-2025-2945)
CVSS 9.9
Litespeedtech Litespeed Cache - Insufficiently Protected Credentials
CVSS 9.8
Git Remote Code Execution via git-lfs (CVE-2020-27955)
CVSS 9.8
Fortinet Forticlient Endpoint Management Server - SQL Injection
CVSS 9.8
Windows Kernel-Mode Driver - Privilege Escalation
CVSS 7.8