mr_me
214 exploits
Active since Dec 2002
ARC Informatique PcVue 6.0-10.0 FrontVue and PlantVue - Arbitrary File Write via SVUIGrd.ocx ActiveX Control
VMware Workspace ONE Access CVE-2022-22954
CVSS 9.8
Azeotech DAQFactory <5.85.1853 - Buffer Overflow
eSignal < 10.6.2425 - Stack-Based and Heap-Based Buffer Overflow via Long StyleTemplate or FaceName Field
Scadatec Procyon SCADA < 1.14 - Remote Code Execution via Long Telnet Password
Advantech WebAccess <V8.2_20170817 - Buffer Overflow
CVSS 6.3
Measuresoft ScadaPro < 4.0.0 - Remote Code Execution via XF Function
Nitro Pro 11.0.3.173 - Remote Code Execution via Directory Traversal in saveAs and launchURL
CVSS 8.8
IrfanView < 4.33 - Remote Code Execution via JPEG2000 QCD Marker Segment
Tguzip - Memory Corruption
AmmSoft ScriptFTP 3.3 - Buffer Overflow
CyberLink Power2Go 7 build 196 and 8 build 1031 - Remote Code Execution via Crafted Project File Parameters
TurboPower Abbrevia < 3.05 - Buffer Overflow via Crafted ZIP File
VisiWave Site Survey < 2.1.9 - Remote Code Execution via Invalid Type Property in VWS/VWR Files
AOL Desktop < 9.6 - Stack-based Buffer Overflow via RTX Hyperlink Tag
ComSndFTP FTP Server <1.3.7 Beta - Code Injection
Foxit PDF Reader Pointer Overwrite UAF
CVSS 6.5
Cisco UCS Director - Auth Bypass/Path Traversal
CVSS 9.8
VMware Workspace ONE Access - Authentication Bypass via OAuth2 ACS Framework
CVSS 9.8
ATutor <= 2.2.1 - Path Traversal and Code Execution via Course Component
CVSS 9.8
Trend Micro InterScan Messaging Security Virtual Appliance 9.0-9.1 - RCE via modTMCSS Proxy
CVSS 8.8
VMware Workspace ONE Access CVE-2022-22960
CVSS 7.8
ColdOfficeView 2.04 - Multiple Blind SQL Injections
ColdGen ColdUserGroup 1.06 - SQL Injection
Oracle JDK 8u144 and 9 - Unauthenticated Partial Denial of Service and Data Manipulation via Deployment Subcomponent
CVSS 7.1