nu11secur1ty
103 exploits
Active since Dec 2015
Best Student Result Management System v1.0 - Multiple SQLi
Beauty-salon v1.0 - Remote Code Execution (RCE)
atrocore 1.5.25 User interaction - Unauthenticated File upload - RCE
Bangresto 1.0 - SQL Injection
b2evolution <7.2.2-stable - SQL Injection
CVSS 8.8
Air Cargo Management System v1.0 - SQLi
Equipment Rental Script-1.0 - SQLi
101 News 1.0 - Multiple-SQLi
ImageMagick 7.1.0-49 - DoS
CVSS 6.5
htmly 2.8.0 - XSS
CVSS 5.4
Spotweb 1.4.9 - DOM Based Cross-Site Scripting (XSS)
ManageEngin AMP 4.3.0 - File-path-traversal
Horde Groupware < 5.2.22 - XSS
CVSS 6.1
Microsoft 365 Apps - Use After Free
CVSS 7.8
Dzzoffice < 2.02.1 - XSS
CVSS 6.1
craftercms 4.x.x - CORS
Microsoft 365 Apps - Heap Buffer Overflow
CVSS 7.8
Microsoft Outlook - RCE
CVSS 8.8
Microsoft OneNote (Version 2305 Build 16.0.16501.20074) 64-bit - Spoofing
Microsoft Office - Privilege Escalation
CVSS 7.8
Microsoft 365 Apps - Out-of-Bounds Read
CVSS 7.8
Microsoft Excel - RCE
CVSS 7.8
Sudo Heap-Based Buffer Overflow
CVSS 7.8
Microsoft Edge <Webview2 - SSRF
CVSS 8.2
Microsoft Edge < - Info Disclosure
CVSS 6.5