orangmuda
20 exploits
Active since Sep 2018
Movable Type < 1.46, 4.0-6.3.11, 6.5.0-6.8.2 - Remote Code Execution via XMLRPC API
Google Chrome <92.0.4515.107 - Use After Free
VMware vCenter Server and Cloud Foundation - Remote Code Execution via vSphere Client Plugin
Gutenberg Template Library & Redux Framework <= 4.2.11 - Sensitive Information Exposure
Pulse Connect Secure >=9.0R3/9.1R1 - Auth Bypass
Windows 10 1903/1909 and Windows Server 1903/1909 - Remote Code Execution via SMBv3 Compression Buffer Overflow
Atlassian Confluence Server and Data Center - OGNL Injection
Aviatrix Controller <6.5-1804.1922 - Code Injection
Woody ad snippets < 2.2.5 - Unauthenticated Options Import
Apache 2.4.49/2.4.50 Traversal RCE
Adobe ColdFusion July 12 release (2018.0.0.310739) Update 6 and earlier Update 14 and earlier - Unrestricted File Upload
Pega Infinity 8.2.1-8.5.2 - Authentication Bypass via Password Reset
Woody ad snippets < 2.2.5 - Unauthenticated Options Import
CVSS 8.8
Woody ad snippets < 2.2.5 - Unauthenticated Options Import
CVSS 8.8
Woody ad snippets < 2.2.5 - Unauthenticated Options Import
CVSS 8.8
Woody ad snippets < 2.2.5 - Unauthenticated Options Import
CVSS 8.8
Woody ad snippets < 2.2.5 - Unauthenticated Options Import
CVSS 8.8
Woody ad snippets < 2.2.5 - Unauthenticated Options Import
CVSS 8.8
Pulse Connect Secure >=9.0R3/9.1R1 - Auth Bypass
CVSS 10.0
Pulse Connect Secure >=9.0R3/9.1R1 - Auth Bypass
CVSS 10.0