nanaao
12 exploits
Active since Apr 2021
Dirty Pipe Local Privilege Escalation via CVE-2022-0847
Unzip - Heap-Based Buffer Overflow via Crafted Zip File
Mojang Bedrock Dedicated Server <1.18.2 - Code Injection
CSV+ < 0.8.1 - Unauthenticated Cross-Site Scripting via Crafted CSV File with HTML a Tag
CVSS 9.6
Apache Spark UI - Privilege Escalation
CVSS 8.8
Mini-Tmall v1.0 - Privilege Escalation
CVSS 8.8
Adobe Commerce <2.4.3-p1, <2.3.7-p2 - RCE
CVSS 9.8
Dirty Pipe Local Privilege Escalation via CVE-2022-0847
CVSS 7.8
Spring Cloud Gateway Remote Code Execution
CVSS 10.0
Kingsoft WPS Office < 11.2.0.10382 - Remote Code Execution via Registry Modification
CVSS 9.8
Microsoft Office Word MSDTJS
CVSS 7.8
Nacos < 1.4.1 - Unauthenticated Database Manipulation via Derby Endpoint
CVSS 8.6