z3
15 exploits
Active since Oct 2019
Grafana Plugin Path Traversal
Metabase - Path Traversal and Local File Inclusion via Custom GeoJSON Map URL
NETGEAR devices - Unauthenticated Access
CVSS 9.8
WAVLINK AC1200 WAVLINK-A42W-1.27.6-20180418 - Unauthenticated Access via wx.html Page
CVSS 9.8
WAVLINK AC1200 WAVLINK-A42W-1.27.6-20180418 - Unauthenticated Information Disclosure via live_mfg.html
CVSS 7.5
Netgear WAC104 < 1.0.4.13 - Unauthenticated Information Exposure via BRS_top.html
CVSS 5.3
Netgear WAC104 < 1.0.4.13 - Unauthenticated Information Exposure via MNU_top.htm
CVSS 7.5
MonstaFTP 2.10.3 - Server-Side Request Forgery via HTTPFetcher.php
CVSS 9.1
BaijiaCMS V4 4.1.4 - Server-Side Request Forgery via url Parameter
CVSS 8.8
WeBid <=1.2.2 - Server-Side Request Forgery via Theme Parameter
CVSS 9.1
rconfig 3.9.4 - Authenticated Server-Side Request Forgery via path_b Parameter
CVSS 8.8
rconfig v3.9.4 - Authenticated Server-Side Request Forgery via path_a Parameter
CVSS 8.8
rconfig v3.9.4 - Authenticated Server-Side Request Forgery via path parameter
CVSS 8.8
WonderCMS 3.1.3 - Server-Side Request Forgery via installUpdateThemePluginAction
CVSS 8.1
WonderCMS 3.1.3 - Server-Side Request Forgery via PluginThemeUrl Parameter
CVSS 5.3