r4p3c4
64 exploits
Active since Feb 2024
FortiOS/FortiProxy Out-of-bounds Write Vulnerability
iPadOS < 17.7.6 - Arbitrary File System Modification
Grafana 11.0.0-11.0.5 - Authenticated Command Injection via DuckDB SQL Expressions
xz <5.6.0 - Code Injection
CrushFTP < 10.7.1 - Unauthenticated Server-Side Template Injection
Homepage 0.9.1 - Unauthenticated Information Disclosure via DNS Rebinding
Moodle Remote Code Execution (CVE-2024-43425)
WordPress TI WooCommerce Wishlist SQL Injection (CVE-2024-43917)
PHP CGI Argument Injection Remote Code Execution
AMI MegaRAC SP-X 12-12.7 - Unauthenticated Authentication Bypass via Redfish Host Interface
Google Chrome < 128.0.6613.84 - Out of Bounds Memory Access in Skia
Google Chrome <128.0.6613.113 - Buffer Overflow
Google Chrome <128.0.6613.113 - Buffer Overflow
Google Chrome <128.0.6613.137 - Buffer Overflow
FortiOS/FortiProxy Out-of-bounds Write Vulnerability
7-Zip 24.09 - Mark-of-the-Web Bypass Code Execution
Cloud Jasperreports IO < 4.0.0 - Insecure Deserialization
Eastnets PaymentSafe <2.5.26.0 - XSS
picklescan <0.0.21 - Code Injection
Cisco Identity Services Engine and ISE-PIC - Unauthenticated Arbitrary File Upload and Remote Code Execution
Camaleon CMS < 2.9.1 - Privilege Escalation via Mass Assignment in UsersController
2 stars
Apache HTTP Server 2.4.35-2.4.63 - Access Control Bypass via TLS 1.3 Session Resumption
NVIDIA CUDA Toolkit - Buffer Overflow
Windows File Explorer - Exposure of Sensitive Information to an Unauthorized Actor
Cacti Graph Template authenticated RCE versions prior to 1.2.29