mr_me
214 exploits
Active since Dec 2002
ManageEngine Desktop Central < 10.0.479 - Remote Code Execution via Java Deserialization in FileStorage
Shopware 5.3.0-5.6.x - Remote Code Execution via PHP Object Instantiation Bypass
CVSS 8.8
Trend Micro InterScan Messaging Security Virtual Appliance 9.0-9.1 - RCE via modTMCSS Proxy
CVSS 8.8
Trend Micro InterScan Messaging Security Virtual Appliance < 9.1 - Cross-Site Scripting
CVSS 6.1
ATutor 2.2.1 - SQL Injection via searchFriends Function
CVSS 9.8
Trend Micro Threat Discovery Appliance 2.6.1062r1 - Path Traversal & File Deletion via Session ID
CVSS 9.8
Foxit Reader and PhantomPDF < 9.0.1.1049 - Remote Code Execution via Text Annotation Point Attribute
CVSS 8.8
cman 2.20080629 and 2.20080801 - Arbitrary File Write via Symlink Attack on /tmp/eglog
PHP Inventory 1.2 - Authenticated SQL Injection via sup_id Parameter
Cisco Data Center Network Manager < 11.3(1) - Unauthenticated Authentication Bypass via Hard-coded Credentials
CVSS 7.5
Cisco Data Center Network Manager < 11.3(1) - Unauthenticated Authentication Bypass via Hard-coded Credentials
CVSS 9.8
Foxit PDF Reader Pointer Overwrite UAF
CVSS 6.5
Foxit PDF Reader Pointer Overwrite UAF
CVSS 6.5
HPE Intelligent Management Center PLAT 7.3 (E0504) - Remote Code Execution
CVSS 8.8
ComSndFTP FTP Server <1.3.7 Beta - Code Injection
Open Journal Systems < 2.3.6 - Cross-Site Request Forgery via File Upload
Open Conference Systems < 2.3.4 - Cross-Site Request Forgery via File Upload
Measuresoft ScadaPro <4.0.0 - Buffer Overflow
Viscom Image Viewer CP Pro/Gold <8.0-6.0 - Buffer Overflow
ColdGen ColdUserGroup 1.06 - Cross-Site Scripting via Search Keywords Parameter
PHP Inventory 1.2 - Cross-Site Scripting via sup_id Parameter
Cisco Data Center Network Manager < 11.3(1) - Unauthenticated Remote Code Execution via Authentication Bypass
CVSS 9.8
activeCollab Chat Module < 1.5.2 - Authenticated Remote Code Execution via Message Text Parameter
VMware vCenter Server and Cloud Foundation - Remote Code Execution via vSphere Client Plugin
CVSS 9.8
Shopware < 5.3.4 - PHP Object Instantiation and XXE via ProductStream Controller
CVSS 6.5