karthithehacker
30 exploits
Active since Feb 2000
Sonatype Nexus Repository <3.68.1 - Path Traversal
WPS Hide Login <1.9.1 - Info Disclosure
WordPress Automatic Plugin <= 3.92.0 - SQL Injection
Check Point Quantum Gateway - Information Disclosure
Apache Superset Signed Cookie Priv Esc
Keycloak < 17.0.0 - Reflected Cross-Site Scripting via POST Request
Contact Form 7 < 5.3.2 - Unrestricted File Upload and Remote Code Execution via Filename Special Characters
Keycloak < 13.0.0 - Unauthenticated Information Disclosure via Client Registration Endpoint
Frontpage Server Extensions - Info Disclosure
2 stars
spider-flow 0.4.3 - Remote Code Execution via FunctionService.saveFunction
LearnDash LMS <4.10.2 - Info Disclosure
Defender Security WP <4.1.0 - Auth Bypass
Plesk Obsidian <18.0.49 - Host Header Injection
Oracle WebLogic Server 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0, 14.1.1.0.0 - Unauthenticated Path Traversal via HTTP
Oracle E-Business Suite 12.2 - Unauthorized Access
Apache HTTP Server <2.4.48 - SSRF
Cisco ASA 9.6-9.6.4.42 & FTD 6.2.3-6.2.3.16 Unauthenticated Path Traversal
Cisco ASA & FTD - Unauthenticated Path Traversal & Arbitrary File Deletion via HTTP
phpMyAdmin < 4.9.0 - Cross-Site Request Forgery
Joomla! 3.2-3.4.3 - SQL Injection
1 stars
Internet Information Services 6.0 - Remote Code Execution via WebDAV PROPFIND Request
MS15-034 HTTP Protocol Stack Request Handling Denial-of-Service
EventON WordPress Plugin < 2.2.7 - Unauthenticated Email Address Disclosure via AJAX Action
CVSS 5.3
likeshop < 2.5.7.20210311 - Unrestricted File Upload via FileServer::userFormImage
CVSS 7.3
PaperCut NG <22.0.12 - Unauthenticated RCE
CVSS 6.5