juan vazquez
645 exploits
Active since Sep 2005
ActiveFax (ActFax) 4.3 - Client Importer Buffer Overflow (Metasploit)
ACDSee FotoSlate 4.0 Build 146 - Stack-Based Buffer Overflow via PLP File Tag
Adobe Reader/Acrobat <9.5.5, <10.1.7, <11.0.03 - Buffer Overflow
Adobe Acrobat and Reader < 10.1.1 - Remote Code Execution via U3D Memory Corruption
CVSS 9.8
HP SiteScope 10.1x and 11.x < 11.22 - Unauthenticated Remote Code Execution via APISiteScopeImpl issueSiebelCmd Method
Foswiki MAKETEXT Remote Command Execution
D-Link Devices - UPnP SOAP TelnetD Command Execution (Metasploit)
Centreon 2.5.1 and Centreon Enterprise Server 2.2 - SQL Injection via Multiple Parameters
Webmin < 1.590 - Authenticated Remote Command Execution via Invalid Pathname Character
TWiki MAKETEXT Remote Command Execution
PineApp Mail-SeCure - 'livelog.html' Arbitrary Command Execution (Metasploit)
TikiWiki CMS/Groupware < 8.2 - Exposure of Sensitive Information via Direct Request
SugarCRM CE <= 6.3.1 - Code Injection
CVSS 9.8
Symantec Web Gateway 5.0.x - Remote Code Execution via File Management Scripts
Symantec Web Gateway < 5.0.3 - Remote Code Execution via Management GUI Script Access
Support Incident Tracker Remote Command Execution
phpScheduleIt <1.2.10 - Code Injection
Hastymail2 2.1.1 - Remote Code Execution via rs or rsargs[] Parameter
Family Connections CMS 2.5.0-2.7.1 - Remote Code Execution via dev/less.php argv[1] Parameter
Invision Power Board 3.1.x-3.3.x core.php - Impact Unknown
W3 Total Cache < 0.9.2.8 - Remote PHP Code Execution
CVSS 9.8
vtiger CRM < 5.4.0 - PHP Code Injection via vtigerolservice.php
CVSS 9.8
vBulletin 5.0.0 Beta 11 and earlier - Authenticated SQL Injection via nodeid Parameter
DataLife Engine <9.7 - Info Disclosure
PineApp Mail-SeCure - 'test_li_connection.php' Arbitrary Command Execution (Metasploit)