wvu
151 exploits
Active since Apr 2014
InfiniteWP Client <1.9.4.5 - Privilege Escalation
CVSS 9.8
Fortinet <5.0.12 - Hardcoded Passphrase
CVSS 9.8
Drupal 7.0.0-7.61.0 8.5.0-8.5.10 8.6.0-8.6.9 - Remote Code Execution via Unsanitized Field Data
CVSS 8.1
libssh Authentication Bypass Scanner
CVSS 9.1
macOS X - Remote Command Execution via HTTP Redirect Pipe Character
Apache Jetspeed Arbitrary File Upload
CVSS 8.8
Atlassian Confluence Server and Data Center - OGNL Injection
CVSS 9.8
NoneCms V1.3 - Remote Code Execution via Filter Parameter
CVSS 9.8
Liferay Portal <7.2.1 CE GA2 - Code Injection
CVSS 9.8
Apache Struts 2 Namespace Redirect OGNL Injection
CVSS 8.1
OpenSMTPD OOB Read Local Privilege Escalation
CVSS 9.8
Drupal Drupalgeddon 2 Forms API Property Injection
CVSS 9.8
VMware vCenter Server and Cloud Foundation - Remote Code Execution via vSphere Client Plugin
CVSS 9.8
Apache Struts 2 REST Plugin XStream RCE
CVSS 8.1
Exim <4.86.2 - Privilege Escalation
CVSS 7.0
PHPMailer Sendmail Argument Injection
CVSS 9.8
GNU Bash through 4.3 bash43-026 - Remote Code Execution via Environment Variable Function Parsing
CVSS 8.8
Oracle WebLogic Server <14.1.1.0.0 - RCE
CVSS 7.2
Blueimp jQuery-File-Upload <=9.22.0 - File Upload
CVSS 9.8
WSO2 Arbitrary File Upload to RCE
CVSS 9.8
OpenSMTPD 6.6 - Remote Code Execution via MAIL FROM Field
CVSS 9.8
VEEAM One Agent 9.5.4.4587 - Deserialization
CVSS 9.8
Artifex Ghostscript <9.24 - Privilege Escalation
CVSS 7.8
MyLittleAdmin 3.8 - Unauthenticated Remote Code Execution via Hardcoded MachineKey
CVSS 9.8
Microsoft Exchange Server - Privilege Escalation
CVSS 9.0