Host entries 10.0.160.243 admilost.echocity-f.com Content Default Credentials Admidio v4.2.10 - Remote Code Execution (RCE) via Unrestricted File Upload Privesc via Custom Ansible Playboo...
Host entries 10.0.160.217 bludmoji.echocity-f.com Content Default Credentials Remote Code Execution (RCE) through Image API on Bludit Reconnaissance Initial reconnaissance for TCP ports ...
Host entries 10.0.160.232 Content Default Credentials Ulicms - Remote Code Execution (RCE) Arbitrary Command Injection in fluent-ffprobe Reconnaissance Initial reconnaissance for TCP p...
Host entries 10.0.160.232 Content Default Credentials ProjeQtOr Project Management System 10.3.2 - Remote Code Execution (RCE) json-override Prototype Pollution Reconnaissance Initial ...
Host entries 10.0.160.231 phobex.echocity-f.com Content Default Credentials CE Phoenix 1.0.8.20 Remote Code Execution @almela/obx Prototype Pollution Reconnaissance Initial reconnaissa...
Host entries 10.0.14.35 Content RCE in Apache HugeGraph Server Command Injection in certificate subject Reconnaissance Initial reconnaissance for TCP ports nmap -p- -sS --open --min-rate...
Host entries 10.10.10.103 sizzle.htb.local sizzle.htb htb.local Content Default Credentials Abusing WebsiteBaker CMS feature to execute PHP through an installed module Arbitrary Command I...
Host entries 10.0.160.239 fruityloops.echocity-f.com Content Open Web Analytics 1.7.3 - Remote Code Execution Source Code Review Prototype Pollution vulnerability affecting @apphp/obje...
Host entries 10.0.160.225 Content Default credentials Flatpress 1.2.1 - File upload bypass to RCE Arbitrary file read and write during snapshot recovery in qdrant/qdrant Reconnaissance ...
Host entries 10.0.160.224 Content Weak Password, same as the CMS name Flatnux Remote Code Execution (Authenticated) Path Hijacking Reconnaissance Initial reconnaissance for TCP ports n...