magicming200

2 exploits Active since Mar 2019
CVE-2020-10199 NOMISEC HIGH SCANNER
Nexus Repository Manager Java EL Injection RCE
Sonatype Nexus Repository before 3.21.2 allows JavaEL Injection (issue 1 of 2).
25 stars
CVSS 8.8
CVE-2019-7238 NOMISEC CRITICAL WORKING POC
Sonatype Nexus Repository Manager <3.15.0 - Privilege Escalation
Sonatype Nexus Repository Manager before 3.15.0 has Incorrect Access Control.
25 stars
CVSS 9.8