sinn3r
411 exploits
Active since Dec 2002
MS14-060 Microsoft Windows OLE Package Manager Code Execution
CVSS 7.8
Rejected
Windows - Local Privilege Escalation via EPATHOBJ::pprFlattenRec Pointer Initialization
CVSS 7.8
Firefox 17.0.1 Flash Privileged Code Injection
Oracle Java SE <7.6 - Info Disclosure
Rejected
HP SAN/iQ 9.5 - Authenticated OS Command Injection via Ping Endpoint Parameters
Axis IP Cameras - Access Control Bypass
CVSS 9.8
Axis IP Cameras - OS Command Injection
CVSS 9.8
MS14-060 Microsoft Windows OLE Package Manager Code Execution
CVSS 7.8
VICIDIAL dialer <2.8-403a, 2.7, 2.7RC1 - Command Injection
VICIDIAL < 2.7 - SQL Injection via Campaign Variable in SCRIPT_multirecording_AJAX.php
HP SAN/iQ < 9.5 - Authenticated OS Command Injection via Ping Parameter
Sysax Multi Server <5.55 - Buffer Overflow
CVSS 9.8
Dolibarr ERP/CRM <= 3.1.1-3.2.0 - Command Injection
RabidHamster R4 v1.25 - Buffer Overflow
PHP Volunteer Management System v1.0.2 - Code Injection
LibrettoCMS 1.1.7 - Unauthenticated RCE
ZPanel - Local Privilege Escalation via zsudo Sudoers Misconfiguration
SolarWinds Backup Profiler < 5.1.2 - SQL Injection via LoginServlet loginName Parameter
CVSS 9.8
WebPageTest < 2.6 - Remote Code Execution via Unrestricted File Upload in resultimage.php
Cyclope Employee Surveillance Solution 6.x - SQL Injection
MobileCartly 1.0 - Unauthenticated Arbitrary File Creation via savepage.php
Auxilium RateMyPet - Unauthenticated Arbitrary File Upload via Banner Upload Feature
PhpTax 0.8 - Unauthenticated Remote Code Execution via drawimage.php pfilez Parameter