shoucheng3
136 exploits
Active since Dec 2012
Apache JSPWiki 2.9.0-2.11.0.M3 - Stored Cross-Site Scripting via Malicious Attachment
CVSS 6.1
Apache JSPWiki 2.9.0-2.11.0.M2 - Path Traversal via Specially Crafted URL
CVSS 7.5
Apache ActiveMQ <5.15.8 - Info Disclosure
CVSS 7.5
Apache Tapestry 5.4.0-5.4.4 and tapestry-core 5.4.0-5.4.5 - Path Traversal via Backslash Character
CVSS 7.5
Apache Tapestry 5.4.0-5.4.4 and tapestry-core 5.4.0-5.4.5 - Path Traversal via Backslash Character
CVSS 7.5
Apache Camel 2.0.0-2.19.0 and 2.21.0-2.21.4 - Path Traversal
CVSS 7.5
Square Retrofit <2.5.0 - Path Traversal
CVSS 7.5
Jolokia 1.3.7-1.4.x - Cross-Site Scripting via HTTP Servlet
CVSS 6.1
sparkjava/spark < 2.7.2 - Path Traversal via File URL
CVSS 5.3
Apache Camel's Mail <2.22.0 - Path Traversal
CVSS 5.3
Hutool < 4.1.12 - Path Traversal and Arbitrary File Write via ZipUtil Unzip Function
CVSS 7.5
Spring Security OAuth < 2.0.14, 2.3.0-2.3.2 - Remote Code Execution via Authorization Endpoint
CVSS 9.8
Eclipse Vert.x <3.5.3 - Path Traversal
CVSS 9.8
Eclipse Vert.x <3.5.3 - Path Traversal
CVSS 9.8
OWASP Dependency-Check <3.2.0 - Path Traversal
CVSS 7.8
Apache Tika 0.9-1.18 - Path Traversal via Embedded File with Absolute Path
CVSS 5.9
Apache Tika 0.9-1.18 - Path Traversal via Embedded File with Absolute Path
CVSS 5.9
JBoss WildFly Application Server 9.x - Path Traversal via ServletResourceManager
CVSS 5.5
sparkjava/spark < 2.7.2 - Path Traversal via File URL
CVSS 5.3
zip4j < 1.3.3 - Path Traversal via Zip Archive Entry Extraction
CVSS 6.5
zt-zip < 1.13 - Path Traversal via Zip Archive Entry Extraction
CVSS 5.5
Plexus-archiver <3.6.0 - Path Traversal
CVSS 5.5
Apache Sling XSS Protection API < 1.0.12 - Cross-Site Scripting via encodeForJSString Method
CVSS 6.1
OWASP AntiSamy < 1.5.5 - Cross-Site Scripting via Style Attribute Bypass
CVSS 6.1
OWASP AntiSamy < 1.5.7 - Cross-Site Scripting via HTML5 Entity Encoding
CVSS 6.1