mrk336
19 exploits
Active since Mar 2022
Windows TCP/IP < - Memory Corruption
Windows Server 2012, 2016, 2019, 2022, 2025 - Unauthenticated RCE via Deserialization
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - Privilege Escalation via NTLM Authentication
Windows Kernel - Use-After-Free via Race Condition
SAP S/4HANA - Authenticated ABAP Code Injection via RFC Function Module
NVIDIA Container Toolkit < 1.17.8 - Untrusted Search Path via Container Initialization Hooks
xz <5.6.0 - Code Injection
Microsoft Windows 11 version 22H3 - Windows DNS Client Remote Code Execution Vulnerability
Azure Networking - Improper Access Control
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - SMB Server Relay Attack via Improper Authentication
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - SMB Server Relay Attack via Improper Authentication
chaos-mesh < 2.7.3 - Unauthenticated Remote Code Execution via cleanTcs Mutation
Remote Desktop Gateway Service - Use After Free
Remote Desktop Gateway Service - Use After Free
Kubernetes <1.28.11, 1.29.0-1.29.6, 1.30.0-1.30.2 - Command Injection
Foreman smart_proxy_salt < 2.1.5 - Authenticated Incorrect Authorization
SlimStat Analytics <= 5.3.5 - Unauthenticated Stored Cross-Site Scripting via 'fh'
CVSS 7.2
Desktop Windows Manager - Info Disclosure
CVSS 5.5
SysAid On-Prem <= 23.3.40 - XML External Entity
CVSS 9.3