juan vazquez
645 exploits
Active since Sep 2005
Support Incident Tracker Remote Command Execution
vtiger CRM < 5.4.0 - PHP Code Injection via vtigerolservice.php
CVSS 9.8
PHP < 5.3.12 and 5.4.x < 5.4.2 - Remote Code Execution via CGI Query String
CVSS 9.8
HP SiteScope 10.1x and 11.x < 11.22 - Unauthenticated Remote Code Execution via APISiteScopeImpl issueSiebelCmd Method
Mutiny Standard <4.5-1.12 - Command Injection
Apache Roller < 5.0.2 - Remote Code Execution via OGNL Injection in getText Methods
TikiWiki CMS/Groupware < 6.7 LTS & < 8.4 - RCE
CVSS 9.8
Apache Archiva 1.3-1.3.8 - Remote Code Execution via OGNL Expression Injection
CVSS 9.8
Oracle Sun GlassFish Enterprise Server <3.0.1 - Info Disclosure
Rocket ServerGraph 1.2 - Path Traversal
Log4Shell HTTP Header Injection
CVSS 10.0
HP SiteScope 11.10-11.12 - Remote Code Execution via SOAP Feature
phpScheduleIt <1.2.10 - Code Injection
VMware vCenter Server 5.0-5.5 and 6.0 - Remote Code Execution via JMX RMI MBean Registration
Visual Mining NetCharts Server - Unrestricted File Upload and Remote Code Execution
CVSS 9.8
Splunk 4.2.x - Authenticated Remote Code Execution via mappy.py Python Class Access
Oracle JDK 7 - Remote Code Execution via JMX MBean Instantiator and Reflection API
CVSS 9.8
Java Applet Field Bytecode Verifier Cache Remote Code Execution
CVSS 9.8
Java Applet AverageRangeStatisticImpl Remote Code Execution
CVSS 9.8
Adobe Flash Player ShaderJob Buffer Overflow
Oracle JDK and JRE - Remote Code Execution via Reflection and JDBC Driver Manager
Adobe Flash Player Shader Buffer Overflow
Umbraco CMS < 4.7.1 - Unauthenticated Remote Code Execution via codeEditorSave.asmx SaveDLRScript Path Traversal
CVSS 9.8
Oracle JRE 7 through Update 11 and OpenJDK 7 - Security Sandbox Bypass via JMX
CVSS 5.3
Java AtomicReferenceArray Type Violation Vulnerability
CVSS 9.8