12 POSTS · TAG · #command-injection
DATECATTITLETARGETCVSS
2024· 6
03-02CVECVE-2023-41283 - QTS 5.1.x, QuTS hero h5.1.x, QuTScloud 5.x OS Command InjectionQNAP7.203-02CVECVE-2023-41281 - QTS 5.1.x, QuTS hero h5.1.x, QuTScloud 5.x OS Command InjectionQNAP7.203-02CVECVE-2023-39297 - QTS 5.1.x, 4.5.x; QuTS hero h5.1.x, h4.5.x; QuTScloud 5.x OS Command InjectionQNAP8.803-02CVECVE-2023-39302 - QTS 5.1.x, QuTS hero h5.1.x, QuTScloud 5.x OS Command InjectionQNAP7.203-02CVECVE-2023-41282 - QTS 5.1.x, QuTS hero h5.1.x, QuTScloud 5.x OS Command InjectionQNAP7.206-01CVECVE-2023-39294 - QTS 5.1.x, QuTS hero h5.1.x OS Command InjectionQNAP7.22023· 1
10-11CVECVE-2023-39295 - QNAP Qumagie < 2.1.3 OS command injectionQNAP8.82022· 3
13-08CVECVE-2022-3967 - VestaCP func/main.sh argument injectionVestaCP7.818-05EXPLOITVestaCP Multiple vulnerabilitiesVestaCP7.826-04POSTVestaCP Multiple VulnerabilitiesVestaCP7.82021· 2
09-08POSTRoxy-WI through 5.2.2.0 pre-auth RCERoxy-wi9.807-08CVECVE-2021-38169 - Roxy-WI through 5.2.2.0 allows authenticated cmd InjectionRoxy-WI8.8CONTACT
rekter0
PROFESSIONAL SLOPPER
Application security research. vulnerability disclosure, and the occasional pre-auth RCE chain.
28CVE7EXPLOIT14POST