wabaf3t

2 exploits Active since Mar 2021
CVE-2021-40859 NOMISEC CRITICAL WORKING POC
Auerswald COMpact 5500R <8.0B - RCE
Backdoors were discovered in Auerswald COMpact 5500R 7.8A and 8.0B devices, that allow attackers with access to the web based management application full administrative access to the device.
6 stars
CVSS 9.8
CVE-2021-21975 NOMISEC HIGH WORKING POC
VMware vRealize Operations Manager < 8.4 - Server-Side Request Forgery via API
Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack to steal administrative credentials.
2 stars
CVSS 7.5