ludy-dev
13 exploits
Active since Mar 2017
Oracle WebLogic Server <14.1.1.0.0 - RCE
PHPUnit < 4.8.28 and 5.x < 5.6.3 - Remote Code Execution via HTTP POST Data
Drupal 7.0.0-7.61.0 8.5.0-8.5.10 8.6.0-8.6.9 - Remote Code Execution via Unsanitized Field Data
Drupal Drupalgeddon 2 Forms API Property Injection
Atlassian Confluence Server and Data Center - OGNL Injection
vBulletin 5.5.4-5.6.2 - Remote Command Execution via subWidgets Data in AJAX Widget Renderer
Apache Log4j < 2.12.2 - Remote Code Execution
Cisco ASA 9.6-9.6.4.42 & FTD 6.2.3-6.2.3.16 Unauthenticated Path Traversal
Oracle WebLogic Server 10.3.6.0.0 and 12.1.3.0.0 - Unauthenticated Remote Code Execution via HTTP
vBulletin 5.x /ajax/render/widget_tabbedcontainer_tab_panel PHP remote code execution.
Apache Struts 2.3.x < 2.3.32 and 2.5.x < 2.5.10.1 - Remote Code Execution via Jakarta Multipart Parser
BIG-IP 11.6.1-11.6.5.1 - Remote Code Execution via TMUI Undisclosed Pages
CVSS 9.8
Apache Struts 2 Forced Multi OGNL Evaluation
CVSS 9.8