x0rbeexd

2 exploits Active since Mar 2019
CVE-2020-5752 NOMISEC HIGH WORKING POC
Druva inSync inSyncCPHwnet64.exe RPC Type 5 Privilege Escalation
Relative path traversal in Druva inSync Windows Client 6.6.3 allows a local, unauthenticated attacker to execute arbitrary operating system commands with SYSTEM privileges.
CVSS 7.8
CVE-2019-9624 NOMISEC HIGH WORKING POC
Webmin 1.900 - Remote Code Execution via Upload and Download Privilege Abuse
Webmin 1.900 allows remote attackers to execute arbitrary code by leveraging the "Java file manager" and "Upload and Download" privileges to upload a crafted .cgi file via the /updown/upload.cgi URI.
CVSS 7.8