nu11secur1ty
118 exploits
Active since Dec 2015
Member Login Script 3.3 - HTTP Request Smuggling via Content-Length Header Parsing
Bus Reservation System 1.1 - SQL Injection
CVSS 9.8
Soosyze 2.0.0 - Unrestricted Upload of File with Dangerous Type via Broken Upload Logic
CVSS 9.8
Jorani 1.0.3 - Reflected Cross-Site Scripting via Language Parameter
WebIGniter 28.7.23 - Authenticated Remote Code Execution via Media File Upload
dawa-pharma 1.0-2022 - Unauthenticated SQL Injection via Email Parameter
Aero CMS 0.0.1 - SQL Injection
CVSS 9.8
Social-Share-Buttons 2.2.3 - SQL Injection
CVSS 8.2
AimOne Video Converter 2.04 Build 103 - Buffer Overflow in Registration Form
CVSS 6.5
Senayan Library Management System 9.0.0 - SQL Injection
CVSS 8.2
Windows 10, 11, and Server - Remote Code Execution
CVSS 9.8
Mojo in Google Chrome <134.0.6998.177 - RCE
CVSS 8.3
Microsoft 365 Apps and Excel - Use-After-Free
CVSS 7.8
Microsoft Office Outlook - Authenticated Local Code Execution via Improper Input Validation
CVSS 6.7
Microsoft SharePoint Enterprise Server - Remote Code Execution via Untrusted Data Deserialization
CVSS 8.8
Microsoft Edge - Cross-Site Scripting Filter Bypass via HTML Attribute Mishandling
Microsoft Edge Chromium < 135.0.3179.98 - Unauthenticated Information Disclosure
CVSS 7.4
Windows Backup Service - Privilege Escalation
CVSS 7.1
Windows 10/11, Server 2008 - Privilege Escalation via QoS Scheduler TOCTOU
CVSS 7.8
Microsoft Windows - Win32k Elevation of Privilege
Windows - Elevation of Privilege via MSI Package Symbolic Link Processing
CVSS 7.8
Microsoft 365 Apps and Office Long Term Servicing Channel - Use-After-Free
CVSS 8.4
Microsoft 365 Apps and Excel - Use-After-Free
CVSS 7.8
Windows 11 22H2 < 10.0.22621.5624 - Authenticated Use-After-Free in Brokering File System
CVSS 7.0
Windows 10/11, Server 2016-2019 Local Privilege Escalation via Heap Overflow
CVSS 7.0