juan vazquez
645 exploits
Active since Sep 2005
Oracle JDK and JRE - Remote Code Execution via Reflection and JDBC Driver Manager
Apache Archiva 1.3-1.3.8 - Remote Code Execution via OGNL Expression Injection
CVSS 9.8
Adobe Flash Player ByteArray Use After Free
CVSS 9.8
Adobe Flash Player Drawing Fill Shader Memory Corruption
Adobe Flash Player Nellymoser Audio Decoding Buffer Overflow
CVSS 9.8
Adobe Flash Player ShaderJob Buffer Overflow
Apache Struts < 2.2.3.1 - Remote Code Execution via ExceptionDelegator OGNL Expression Injection
CVSS 9.8
Adobe IndesignServer 5.5 - SOAP Server Arbitrary Script Execution (Metasploit)
MoinMoin < 1.9.6 - Authenticated Path Traversal and Arbitrary File Write via Twikidraw and Anywikidraw Actions
Centreon 2.5.1 and Centreon Enterprise Server 2.2 - Remote Code Execution via session_id or template_id Parameter
Zabbix Server <1.8 - Command Injection
VICIDIAL dialer <2.8-403a, 2.7, 2.7RC1 - Info Disclosure
Sophos Web Appliance <3.7.9.1, <3.8.1.1 - Command Injection
Samba < 3.4.16, 3.5.x < 3.5.14, 3.6.x < 3.6.4 - Remote Code Execution via RPC Array Length Validation Bypass
Mutiny < 5.0-1.11 - Authenticated Path Traversal and Arbitrary File Write via EditDocument Servlet
Mutiny Standard <4.5-1.12 - Command Injection
HP Network Node Manager i <9.2x - RCE
GroundWork Monitor Enterprise 6.7.0 - Authenticated Remote Code Execution via monarch_scan.cgi
Sophos Web Appliance <3.7.9.1, <3.8-3.8.1.1 - Privilege Escalation
AlienVault OSSIM < 4.7.0 - Remote Code Execution via av-centerd SOAP Service
DCNM-SAN Server <6.2(1) - Path Traversal
Apache Roller < 5.0.2 - Remote Code Execution via OGNL Injection in getText Methods
Apache Struts 2.0.0-2.3.16 - Remote Code Execution via DebuggingInterceptor
Elasticsearch < 1.2 - Remote Code Execution via Dynamic Scripting
CVSS 8.1
Elasticsearch <1.3.8, <1.4.3 - Command Injection
CVSS 9.8