Sheet1

Exploits Err:510

Name Disclosure Date Rank Description ------aix/local/ibstat_path 2013-09-24 excellent ibstat $PATH Privilege Esca aix/rpc_cmsd_opcode21 2009-10-07 great AIX Calendar Manager aix/rpc_ttdbserverd_realpath 2009-06-17 great ToolTalk rpc.ttdbserverd android/browser/samsung_knox_smdm_url 2014-11-12 excellent Samsung Ga android/browser/webview_addjavascriptinterface 2012-12-21 excellent Android Brow android/fileformat/adobe_reader_pdf_js_interface 2014-04-13 good Adobe Reader android/local/futex_requeue 2014-05-03 excellent Android 'Towelroot' Fut apple_ios/browser/safari_libtiff 2006-08-01 good Apple iOS MobileSafari apple_ios//mobilemail_libtiff 2006-08-01 good Apple iOS MobileMail apple_ios/ssh/cydia_default_ssh 2007-07-02 excellent Apple iOS Default S bsdi/softcart/mercantec_softcart 2004-08-19 great Mercantec SoftCart CG dialup/multi/login/manyargs 2001-12-12 good System V Derived /bin/l firefox/local/exec_shellcode 2014-03-10 normal Firefox Exec Shellcode /ftp/proftp_telnet_iac 2010-11-01 great ProFTPD 1.3.2rc3 - 1.3.3 freebsd/local/mmap 2013-06-18 great FreeBSD 9 Address Space freebsd/misc/citrix_netscaler_soap_bof 2014-09-22 normal Citrix NetScaler SO freebsd/samba/trans2open 2003-04-07 great Samba trans2open Ov freebsd/tacacs/xtacacsd_report 2008-01-08 average XTACACSD report() freebsd//telnet_encrypt_keyid 2011-12-23 great FreeBSD Telnet Serv hpux/lpd/cleanup_exec 2002-08-28 excellent HP-UX LPD Command irix/lpd/tagprinter_exec 2001-09-01 excellent Irix LPD tagprinter Comm /antivirus/escan_password_exec 2014-04-04 excellent eScan Web Mana linux/browser/adobe_flashplayer_aslaunch 2008-12-17 good Adobe Flash Pla linux/ftp/proftp_sreplace 2006-11-26 great ProFTPD 1.2 - 1.3.0 srepla linux/ftp/proftp_telnet_iac 2010-11-01 great ProFTPD 1.3.2rc3 - 1.3.3b linux/games/ut2004_secure 2004-06-18 good Unreal Tournament 20 linux/http/accellion_fta_getstatus_oauth 2015-07-10 excellent Accellion FTA getS linux/http/airties_login_cgi_bof 2015-03-31 normal Airties login-cgi Buffer O linux/http/alcatel_omnipcx_mastercgi_exec 2007-09-09 manual Alcatel-Lucent O linux/http/alienvault_sqli_exec 2014-04-24 excellent AlienVault OSSIM SQL linux/http/astium_sqli_upload 2013-09-17 manual Astium Remote Code linux/http/belkin_login_bof 2014-05-09 normal Belkin Play N750 login.cg linux/http/centreon_sqli_exec 2014-10-15 excellent Centreon SQL and Co linux/http/cfme_manageiq_evm_upload_exec 2013-09-04 normal Clou linux/http/ddwrt_cgibin_exec 2009-07-20 excellent DD-WRT HTTP Daem linux/http/dlink_authentication_cgi_bof 2013-02-08 normal -Link authenticatio linux/http/dlink_command_php_exec_noauth 2013-02-04 excellent D-Link Device linux/http/dlink_diagnostic_exec_noauth 2013-03-05 excellent D-Link DIR-645 / D linux/http/dlink_dir300_exec_telnet 2013-04-22 excellent D-Link Devices Unau linux/http/dlink_dir605l_captcha_bof 2012-10-08 manual D-Link DIR-605L Ca linux/http/dlink_dir615_up_exec 2013-02-07 excellent D-Link DIR615h OS linux/http/dlink_dspw215_info_cgi_bof 2014-05-22 normal D-Link info.cgi POS linux/http/dlink_hedwig_cgi_bof 2013-02-08 normal D-Link hedwig.cgi Buf linux/http/dlink_hnap_bof 2014-05-15 normal D-Link HNAP Request R

Page 1 Sheet1 linux/http/dlink_hnap_header_exec_noauth 2015-02-13 normal D-Link Devices linux/http/dlink_upnp_exec_noauth 2013-07-05 normal D-Link Devices UPn linux/http/dolibarr_cmd_exec 2012-04-06 excellent Dolibarr ERP/CRM Po linux/http/dreambox_openpli_shell 2013-02-08 great OpenPLI Webif Arbitr linux/http/esva_exec 2012-08-16 excellent E-Mail Security Virtual Ap linux/http/f5_icontrol_exec 2013-09-17 excellent F5 iControl Remote Roo linux/http/foreman_openstack_satellite_code_exec 2013-06-06 normal Foreman (Re linux/http/fritzbox_echo_exec 2014-02-11 excellent Fritz!Box Webcm Unau linux/http/gitlist_exec 2014-06-30 excellent Gitlist Unauthenticated Rem linux/http/gpsd_format_string 2005-05-25 average Berlios GPSD Format linux/http/groundwork_monarch_cmd_exec 2013-03-08 excellent GroundWork m linux/http/hp_system_management 2012-09-01 normal HP System Manag linux/http/kloxo_sqli 2014-01-28 manual Kloxo SQL Injection and R linux/http/lifesize_uvc_ping_rce 2014-03-21 excellent LifeSize UVC Authenti linux/http/linksys_apply_cgi 2005-09-13 great Linksys WRT54 Access P linux/http/linksys_e1500_apply_exec 2013-02-05 excellent Linksys E1500/E25 linux/http/linksys_themoon_exec 2014-02-13 excellent Linksys E-Series Th linux/http/linksys_wrt110_cmd_exec 2013-07-12 excellent Linksys Devices pi linux/http/linksys_wrt160nv2_apply_exec 2013-02-11 excellent Linksys WRT160 linux/http/linksys_wrt54gl_apply_exec 2013-01-18 manual Linksys WRT54GL linux/http/multi_ncc_ping_exec 2015-02-26 normal D-Link/TRENDnet NC linux/http/mutiny_frontend_upload 2013-05-15 excellent Mutiny 5 Arbitrary Fi linux/http/netgear_dgn1000b_setup_exec 2013-02-06 excellent Netgear DGN10 linux/http/netgear_dgn2200b_pppoe_exec 2013-02-15 manual Netgear DGN2 linux/http/netgear_readynas_exec 2013-07-12 manual NETGEAR ReadyN linux/http/nginx_chunked_size 2013-05-07 normal HTTP Server 1 linux/http/openfiler_networkcard_exec 2012-09-04 excellent Openfiler v2.x Netw linux/http/pandora_fms_exec 2014-01-29 excellent Pandora FMS Remot linux/http/pandora_fms_sqli 2014-02-01 excellent Pandora FMS Default C linux/http/peercast_url 2006-03-08 average PeerCast URL Handling B linux/http/pineapp_ldapsyncnow_exec 2013-07-26 excellent PineApp Mail-SeC linux/http/pineapp_livelog_exec 2013-07-26 excellent PineApp Mail-SeCure linux/http/pineapp_test_li_conn_exec 2013-07-26 excellent PineApp Mail-SeCu linux/http/piranha_passwd_exec 2000-04-04 excellent RedHat Piranha Virt linux/http/raidsonic_nas_ib5220_exec_noauth 2013-02-04 manual Raidsonic NAS linux/http/railo_cfml_rfi 2014-08-26 excellent Railo Remote File Include linux/http/realtek_miniigd_upnp_exec_noauth 2015-04-24 normal Realtek SDK M linux/http/seagate_nas_php_exec_noauth 2015-03-01 normal Seagate Busine linux/http/smt_ipmi_close_window_bof 2013-11-06 good Supermicro Onboa linux/http/sophos_wpa_iface_exec 2014-04-08 excellent Sophos Web Prote linux/http/sophos_wpa_sblistpack_exec 2013-09-06 excellent Sophos Web Pro linux/http/symantec_web_gateway_exec 2012-05-17 excellent Symantec Web linux/http/symantec_web_gateway_file_upload 2012-05-17 excellent Symantec We linux/http/symantec_web_gateway_lfi 2012-05-17 excellent Symantec Web Ga linux/http/symantec_web_gateway_pbcontrol 2012-07-23 excellent Symantec We linux/http/symantec_web_gateway_restore 2014-12-16 excellent Symantec Web linux/http/synology_dsm_sliceupload_exec_noauth 2013-10-31 excellent Synology Di linux/http/vap2500_tools_command_exec 2014-11-25 normal Arris VAP2500 linux/http/vcms_upload 2011-11-27 excellent V-CMS PHP File Upload

Page 2 Sheet1 linux/http/wanem_exec 2012-08-12 excellent WAN Emulator v2.3 Co linux/http/webcalendar_settings_exec 2012-04-23 excellent WebCalendar 1.2. linux/http/webid_converter 2011-07-05 excellent WeBid converter. R linux/http/zabbix_sqli 2013-09-23 excellent Zabbix 2.0.8 SQL Injection linux/http/zen_load_balancer_exec 2012-09-14 excellent ZEN Load Balance linux/http/zenoss_showdaemonxmlconfig_exec 2012-07-30 good Zenoss 3 sho linux/ids/alienvault_centerd_soap_exec 2014-05-05 excellent AlienVault OSSIM linux/ids/snortbopre 2005-10-18 good Snort Back Orifice Pre-Prep linux/imap/imap_uw_lsub 2000-04-16 good UoW IMAP Server LSU linux/local/desktop_privilege_escalation 2014-08-07 excellent Desktop Linux Passw linux/local/hp_smhstart 2013-03-30 normal HP System Management linux/local/kloxo_lxsuexec 2012-09-18 normal Kloxo Local Privilege Esca linux/local/pkexec 2011-04-01 great Linux PolicyKit Race Conditi linux/local/sock_sendpage 2009-08-13 great Linux Kernel Sendpage linux/local/sophos_wpa_clear_keys 2013-09-06 excellent Sophos Web Prote linux/local/udev_netlink 2009-04-16 great Linux udev Netlink Local P linux/local/vmware_mount 2013-08-22 normal VMWare Setuid vmwa linux/local/zpanel_zsudo 2013-06-07 excellent ZPanel zsudo Local Priv linux/misc/accellion_fta_mpipe2 2011-02-07 excellent Accellion FTA MPIPE linux/misc/drb_remote_codeexec 2011-03-23 excellent Distributed Ruby Se linux/misc/gld_postfix 2005-04-12 good GLD (Greylisting ) linux/misc/hikvision_rtsp_bof 2014-11-19 normal Hikvision DVR RTSP R linux/misc/hp_data_protector_cmd_exec 2011-02-07 excellent HP Data Protect linux/misc/hp_nnmi_pmd_bof 2014-09-09 normal HP Network Node M linux/misc/hp_vsa_login_bof 2013-06-28 normal HP StorageWorks P40 linux/misc/hplip_hpssd_exec 2007-10-04 excellent HPLIP hpssd.py From linux/misc/ib_inet_connect 2007-10-03 good Borland InterBase INET linux/misc/ib_jrd8_create_database 2007-10-03 good Borland InterBase jr linux/misc/ib_open_marker_file 2007-10-03 good Borland InterBase ope linux/misc/ib_pwd_db_aliased 2007-10-03 good Borland InterBase PW linux/misc/lprng_format_string 2000-09-25 normal LPRng use_syslog Re linux/misc/mongod_native_helper 2013-03-24 normal MongoDB nativeHe linux/misc/nagios_nrpe_arguments 2013-02-21 excellent Nagios Remote Pl linux/misc/netsupport_manager_agent 2011-01-08 average NetSupport Man linux/misc/novell_edirectory_ncp_bof 2012-12-12 normal Novell eDirectory 8 linux/misc/sercomm_exec 2013-12-31 great SerComm Device Rem linux/misc/zabbix_server_exec 2009-09-10 excellent Zabbix Server Arbitra linux//mysql_yassl_getname 2010-01-25 good MySQL yaSSL Cert linux/mysql/mysql_yassl_hello 2008-01-04 good MySQL yaSSL SSL He linux/pop3/cyrus_pop3d_popsubfolders 2006-05-21 normal Cyrus IMAPD po linux/postgres/postgres_payload 2007-06-05 excellent PostgreSQL for Linu linux/pptp/poptop_negative_read 2003-04-09 great Poptop Negative Rea linux/proxy/squid_ntlm_authenticate 2004-06-08 great Squid NTLM Authent linux/samba/chain_reply 2010-06-16 good Samba chain_reply Mem linux/samba/lsa_transnames_heap 2007-05-14 good Samba lsa_io_tran linux/samba/setinfopolicy_heap 2012-04-10 normal Samba SetInformatio linux/samba/trans2open 2003-04-07 great Samba trans2open Over linux/smtp/exim4_dovecot_exec 2013-05-03 excellent Exim and Dovecot I linux/smtp/exim_gethostbyname_bof 2015-01-27 great Exim GHOST (glib

Page 3 Sheet1 linux/ssh/ceragon_fibeair_known_privkey 2015-04-01 excellent Ceragon FibeAir linux/ssh/f5_bigip_known_privkey 2012-06-11 excellent F5 BIG-IP SSH Priv linux/ssh/loadbalancerorg_enterprise_known_privkey 2014-03-17 excellent Loadbalance linux/ssh/quantum_dxi_known_privkey 2014-03-17 excellent Quantum DXi V1 linux/ssh/quantum_vmpro_backdoor 2014-03-17 excellent Quantum vmPRO linux/ssh/symantec_smg_ssh 2012-08-27 excellent Symantec Messagin linux/telnet/telnet_encrypt_keyid 2011-12-23 great Linux BSD-derived Teln linux/upnp/dlink_upnp_msearch_exec 2013-02-01 excellent D-Link Unauthen linux/upnp/miniupnpd_soap_bof 2013-03-27 normal MiniUPnPd 1.0 Stack multi/browser/adobe_flash_hacking_team_uaf 2015-07-06 great Adobe Flash P multi/browser/adobe_flash_nellymoser_bof 2015-06-23 great Adobe Flash Play multi/browser/adobe_flash_net_connection_confusion 2015-03-12 great Adobe Flash multi/browser/adobe_flash_opaque_background_uaf 2015-07-06 normal Adobe Fla multi/browser/adobe_flash_pixel_bender_bof 2014-04-28 great Adobe Flash Pla multi/browser/adobe_flash_shader_drawing_fill 2015-05-12 great Adobe Flash Pla multi/browser/adobe_flash_shader_job_overflow 2015-05-12 great Adobe Flash P multi/browser/adobe_flash_uncompress_zlib_uaf 2014-04-28 great Adobe Flash P multi/browser/firefox_escape_retval 2009-07-13 normal Firefox 3.5 escape() multi/browser/firefox_proto_crmfrequest 2013-08-06 excellent Firefox 5.0 - 15.0. multi/browser/firefox_proxy_prototype 2014-01-20 manual Firefox Proxy Proto multi/browser/firefox_queryinterface 2006-02-02 normal Firefox location.Que multi/browser/firefox_svg_plugin 2013-01-08 excellent Firefox 17.0.1 Flash P multi/browser/firefox_tostring_console_injection 2013-05-14 excellent Firefox toString multi/browser/firefox_webidl_injection 2014-03-17 excellent Firefox WebIDL Priv multi/browser/firefox_xpi_bootstrapped_addon 2007-06-27 excellent Mozilla Firefox multi/browser/itms_overflow 2009-06-01 great Apple OS X iTunes 8.1. multi/browser/java_atomicreferencearray 2012-02-14 excellent AtomicRefe multi/browser/java_calendar_deserialize 2008-12-03 excellent Sun Java Calenda multi/browser/java_getsoundbank_bof 2009-11-04 great Sun Java JRE getS multi/browser/java_jre17_driver_manager 2013-01-10 excellent Java Applet Driv multi/browser/java_jre17_exec 2012-08-26 excellent Java 7 Applet Remot multi/browser/java_jre17_glassfish_averagerangestatisticimpl 2012-10-16 excellent Java Appl multi/browser/java_jre17_jaxws 2012-10-16 excellent Java Applet JAX-WS multi/browser/java_jre17_jmxbean 2013-01-10 excellent Java Applet JMX R multi/browser/java_jre17_jmxbean_2 2013-01-19 excellent Java Applet JMX R multi/browser/java_jre17_method_handle 2012-10-16 excellent Java Applet Met multi/browser/java_jre17_provider_skeleton 2013-06-18 great Java Applet Provi multi/browser/java_jre17_reflection_types 2013-01-10 excellent Java Applet Refle multi/browser/java_rhino 2011-10-18 excellent Java Applet Rhino Scrip multi/browser/java_rmi_connection_impl 2010-03-31 excellent Java RMIConnect multi/browser/java_setdifficm_bof 2009-11-04 great Sun Java JRE AWT se multi/browser/java_signed_applet 1997-02-19 excellent Java Signed Applet multi/browser/java_storeimagearray 2013-08-12 great Java storeImageArra multi/browser/java_trusted_chain 2010-03-31 excellent Java Statement.invo multi/browser/java_verifier_field_access 2012-06-06 excellent Java Applet Field B multi/browser/mozilla_compareto 2005-07-13 normal Mozilla Suite/Firefox multi/browser/mozilla_navigatorjava 2006-07-25 normal Mozilla Suite/Firefox multi/browser/opera_configoverwrite 2007-03-05 excellent Opera 9 Configurat multi/browser/opera_historysearch 2008-10-23 excellent Opera historysearch

Page 4 Sheet1 multi/browser/qtjava_pointer 2007-04-23 excellent Apple QTJava toQTPo multi/elasticsearch/script_mvel_rce 2013-12-09 excellent ElasticSearch Dynam multi/elasticsearch/search_groovy_script 2015-02-11 excellent ElasticSearch Sea multi/fileformat/adobe_u3d_meshcont 2009-10-13 good Adobe U3D CLOD multi/fileformat/js_unpacker_eval_injection 2015-02-18 excellent Javascript Injectio multi/fileformat/maple_maplet 2010-04-26 excellent Maple Maplet File Cre multi/fileformat/nodejs_js_yaml_load_code_exec 2013-06-28 excellent Nodejs js-yam multi/fileformat/peazip_command_injection 2009-06-05 excellent PeaZip Zip Proce multi/ftp/pureftpd_bash_env_exec 2014-09-24 excellent Pure-FTPd Externa multi/ftp/wuftpd_site_exec_format 2000-06-22 great WU-FTPD SITE EXE multi/gdb/gdb_server_exec 2014-08-24 great GDB Server Remote Pa multi/handler manual Generic Payload Handler multi/http/activecollab_chat 2012-05-30 excellent Active Collab "chat mod multi/http/ajaxplorer_checkinstall_exec 2010-04-04 excellent AjaXplorer checkInst multi/http/apache_mod_cgi_bash_env_exec 2014-09-24 good Apache mod_cg multi/http/apache_roller_ognl_injection 2013-10-31 excellent Apache Roller OGN multi/http/apprain_upload_exec 2012-01-19 excellent appRain CMF Arbitra multi/http/auxilium_upload_exec 2012-09-14 excellent Auxilium RateMyPet multi/http/axis2_deployer 2010-12-30 excellent Axis2 / SAP BusinessOb multi/http/cisco_dcnm_upload 2013-09-18 excellent Cisco Prime Data Ce multi/http/coldfusion_rds 2013-08-08 great Adobe ColdFusion 9 Adm multi/http/cups_bash_env_exec 2014-09-24 good CUPS Filter Bash En multi/http/cuteflow_upload_exec 2012-07-27 excellent CuteFlow v2.11.2 Ar multi/http/dexter_casinoloader_exec 2014-02-08 excellent Dexter (CasinoLoad multi/http/drupal_drupageddon 2014-10-15 excellent HTTP Parame multi/http/eaton_nsm_code_exec 2012-06-26 excellent Network Shutdown multi/http/eventlog_file_upload 2014-08-31 excellent ManageEngine Eventl multi/http/extplorer_upload_exec 2012-12-31 excellent eXtplorer v2.1 Arbitra multi/http/familycms_less_exec 2011-11-29 excellent Family Connections l multi/http/freenas_exec_raw 2010-11-06 great FreeNAS exec_raw.php multi/http/gestioip_exec 2013-10-04 excellent GestioIP Remote Comma multi/http/git_client_command_exec 2014-12-18 excellent Malicious Git and M multi/http/gitlab_shell_exec 2013-11-04 excellent Gitlab-shell Code Execu multi/http/gitorious_graph 2012-01-19 excellent Gitorious Arbitrary Comm multi/http/glassfish_deployer 2011-08-04 excellent Sun/Oracle GlassFish S multi/http/glossword_upload_exec 2013-02-05 excellent Glossword v1.8.8 - multi/http/glpi_install_rce 2013-09-12 manual GLPI install.php Remote multi/http/horde_href_backdoor 2012-02-13 excellent Horde 3.3.12 Backdo multi/http/hp_sitescope_issuesiebelcmd 2013-10-30 great HP SiteScope issu multi/http/hp_sitescope_uploadfileshandler 2012-08-29 good HP SiteScope Re multi/http/hp_sys_mgmt_exec 2013-06-11 excellent HP System Managem multi/http/hyperic_hq_script_console 2013-10-10 excellent VMware Hyperic HQ multi/http/ispconfig_php_exec 2013-10-30 excellent ISPConfig Authenticat multi/http/jboss_bshdeployer 2010-04-26 excellent JBoss JMX Console B multi/http/jboss_deploymentfilerepository 2010-04-26 excellent JBoss Java Class multi/http/jboss_invoke_deploy 2007-02-20 excellent JBoss DeploymentFil multi/http/jboss_maindeployer 2007-02-20 excellent JBoss JMX Console D multi/http/jboss_seam_upload_exec 2010-08-05 normal JBoss Seam 2 File multi/http/jenkins_script_console 2013-01-18 good Jenkins Script-Console

Page 5 Sheet1 multi/http/kordil_edms_upload_exec 2013-02-22 excellent Kordil EDMS v2.2. multi/http/lcms_php_exec 2011-03-03 excellent LotusCMS 3.0 eval() R multi/http/log1cms_ajax_create_folder 2011-04-11 excellent Log1 CMS writeInf multi/http/manage_engine_dc_pmp_sqli 2014-06-08 excellent ManageEngine multi/http/manageengine_auth_upload 2014-12-15 excellent ManageEngine M multi/http/manageengine_search_sqli 2012-10-18 excellent ManageEngine Se multi/http/mantisbt_php_exec 2014-11-08 great MantisBT XmlImportEx multi/http/mediawiki_thumb 2014-01-28 excellent MediaWiki Thumb.php multi/http/mobilecartly_upload_exec 2012-08-10 excellent MobileCartly 1.0 Arb multi/http/moodle_cmd_exec 2013-10-30 good Moodle Remote Com multi/http/movabletype_upgrade_exec 2013-01-07 normal Movable Type 4.2 multi/http/mutiny_subnetmask_exec 2012-10-22 excellent Mutiny Remote Co multi/http/nas4free_php_exec 2013-10-30 great NAS4Free Arbitrary Re multi/http/netwin_surgeftp_exec 2012-12-06 good Netwin SurgeFTP Rem multi/http/op5_license 2012-01-05 excellent OP5 license.php Remote multi/http/op5_welcome 2012-01-05 excellent OP5 welcome Remote multi/http/openfire_auth_bypass 2008-11-10 excellent Openfire Admin Conso multi/http/openmediavault_cmd_exec 2013-10-30 excellent OpenMediaVault multi/http/openx_backdoor_php 2013-08-07 excellent OpenX Backdoor PH multi/http/opmanager_socialit_file_upload 2014-09-27 excellent ManageEngine O multi/http/oracle_reports_rce 2014-01-15 great Oracle Forms and Repo multi/http/pandora_upload_exec 2010-11-30 excellent Pandora FMS v3.1 A multi/http/php_cgi_arg_injection 2012-05-03 excellent PHP CGI Argument In multi/http/php_volunteer_upload_exec 2012-05-28 excellent PHP Volunteer Ma multi/http/phpldapadmin_query_engine 2011-10-24 excellent phpLDAPadmin q multi/http/phpmoadmin_exec 2015-03-03 excellent PHPMoAdmin 1.1.2 multi/http/phpmyadmin_3522_backdoor 2012-09-25 normal phpMyAdmin 3. multi/http/phpmyadmin_preg_replace 2013-04-25 excellent phpMyAdmin Auth multi/http/phpscheduleit_start_date 2008-10-01 excellent phpScheduleIt PHP multi/http/phptax_exec 2012-10-08 excellent PhpTax pfilez Parameter multi/http/phpwiki_ploticus_exec 2014-09-11 excellent Phpwiki Ploticus Rem multi/http/plone_popen2 2011-10-04 excellent Plone and XMLTo multi/http/pmwiki_pagelist 2011-11-09 excellent PmWiki pagelist.php Re multi/http/polarcms_upload_exec 2012-01-21 excellent PolarBear CMS PH multi/http/processmaker_exec 2013-10-24 excellent ProcessMaker Open multi/http/qdpm_upload_exec 2012-06-14 excellent qdPM v7 Arbitrary PH multi/http/rails_json_yaml_code_exec 2013-01-28 excellent JSO multi/http/rails_secret_deserialization 2013-04-11 excellent Ruby on Rails Known multi/http/rails_xml_yaml_code_exec 2013-01-07 excellent Ruby on Rails XML multi/http/rocket_servergraph_file_requestor_rce 2013-10-30 great Servergr multi/http/sflog_upload_exec 2012-07-06 excellent Sflog! CMS 1.0 Arbitra multi/http/sit_file_upload 2011-11-10 excellent Support Incident Tracker multi/http/snortreport_exec 2011-09-19 excellent Snortreport nmap.php/n multi/http/solarwinds_store_manager_auth_filter 2014-08-19 excellent SolarWinds Sto multi/http/sonicwall_gms_upload 2012-01-17 excellent SonicWALL GMS 6 A multi/http/splunk_mappy_exec 2011-12-12 excellent Splunk Search Remo multi/http/splunk_upload_app_exec 2012-09-27 good Splunk Custom App multi/http/spree_search_exec 2011-10-05 excellent Spreecommerce 0.60 multi/http/spree_searchlogic_exec 2011-04-19 excellent Spreecommerce Arb

Page 6 Sheet1 multi/http/struts_code_exec 2010-07-13 good Apache Struts Remote multi/http/struts_code_exec_classloader 2014-03-06 manual Apache Struts Cla multi/http/struts_code_exec_exception_delegator 2012-01-06 excellent Apache Struts multi/http/struts_code_exec_parameters 2011-10-01 excellent Apache Struts Pa multi/http/struts_default_action_mapper 2013-07-02 excellent D multi/http/struts_dev_mode 2012-01-06 excellent Apache Struts 2 Devel multi/http/struts_include_params 2013-05-24 great Apache Struts include multi/http/stunshell_eval 2013-03-23 great STUNSHELL Web Shell R multi/http/stunshell_exec 2013-03-23 great STUNSHELL Web Shell R multi/http/sun_jsws_dav_options 2010-01-20 great Sun Java System We multi/http/testlink_upload_exec 2012-08-13 excellent TestLink v1.9.3 Arbitra multi/http/tomcat_mgr_deploy 2009-11-09 excellent Mana multi/http/tomcat_mgr_upload 2009-11-09 excellent Apache Tomcat Mana multi/http/traq_plugin_exec 2011-12-12 excellent Traq admincp/common multi/http/uptime_file_upload 2013-11-19 excellent Up.Time Monitoring Sta multi/http/v0pcr3w_exec 2013-03-23 great v0pCr3w Web Shell Rem multi/http/vbseo_proc_deutf 2012-01-23 excellent vBSEO proc_deutf() R multi/http/visual_mining_netcharts_upload 2014-11-03 excellent Visual Mining Ne multi/http/vtiger_install_rce 2014-03-05 manual Vtiger Install Unauthentica multi/http/vtiger_php_exec 2013-10-30 excellent vTigerCRM v5.4.0/v5.3 multi/http/vtiger_soap_upload 2013-03-26 excellent vTiger CRM SOAP Ad multi/http/webpagetest_upload_exec 2012-07-13 excellent WebPageTest Arb multi/http/wikka_spam_exec 2011-11-30 excellent WikkaWiki 1.3.2 Spam multi/http/x7chat2_php_exec 2014-10-27 excellent X7 Chat 2.0.5 lib/messa multi/http/zabbix_script_exec 2013-10-30 excellent Zabbix Authenticated R multi/http/zenworks_configuration_management_upload 2015-04-07 excellent Novell ZE multi/http/zenworks_control_center_upload 2013-03-22 great Novell ZENworks multi/ids/snort_dce_rpc 2007-02-19 good Snort 2 DCE/RPC Prepro multi/misc/arkeia_agent_exec 2015-07-10 great Western Digital Arkeia multi/misc/batik_svg_java 2012-05-11 excellent Squiggle 1.7 SVG Brow multi/misc/hp_data_protector_exec_integutil 2014-10-02 great HP Data Protecto multi/misc/hp_vsa_exec 2011-11-11 excellent HP StorageWorks P400 multi/misc/indesign_server_soap 2012-11-11 excellent Adobe IndesignServ multi/misc/java_jdwp_debugger 2010-03-12 good Java Debug Wire Pro multi/misc/java_jmx_server 2013-05-22 excellent Java JMX Server Insecu multi/misc/java_rmi_server 2011-10-15 excellent Java RMI Server Insecu multi/misc/openview_omniback_exec 2001-02-28 excellent HP OpenView Om multi/misc/pbot_exec 2009-11-02 excellent PHP IRC Bot pbot eval() multi/misc/persistent_hpca_radexec_exec 2014-01-02 great HP Client Automa multi/misc/ra1nx_pubcall_exec 2013-03-24 great Ra1NX PHP Bot PubC multi/misc/veritas_netbackup_cmdexec 2004-10-21 excellent VERITAS NetBa multi/misc/wireshark_lwres_getaddrbyname 2010-01-27 great Wireshark LWR multi/misc/wireshark_lwres_getaddrbyname_loop 2010-01-27 great Wireshark LW multi/misc/zend_java_bridge 2011-03-28 great Zend Server Java Bridg multi/ntp/ntp_overflow 2001-04-04 good NTP Daemon readvar Buf multi/php/php_unserialize_zval_cookie 2007-03-04 average PHP 4 unserialize multi/realserver/describe 2002-12-20 great RealServer Describe Buff multi/samba/nttrans 2003-04-07 average Samba 2.2.2 - 2.2.6 nttra multi/samba/usermap_script 2007-05-14 excellent Samba "username m

Page 7 Sheet1 multi/sap/sap_mgmt_con_osexec_payload 2011-03-08 excellent SAP Managem multi/sap/sap_soap_rfc_sxpg_call_system_exec 2013-03-26 great SAP SOAP R multi/sap/sap_soap_rfc_sxpg_command_exec 2012-05-08 great SAP SOAP R multi/script/web_delivery 2013-07-19 manual Script Web Delivery multi/ssh/sshexec 1999-01-01 manual SSH User Code Execution multi/svn/svnserve_date 2004-05-19 average Subversion Date Svnse multi/upnp/libupnp_ssdp_overflow 2013-01-29 normal Portable UPnP SDK multi/vnc/vnc_keyboard_exec 2015-07-10 great VNC Keyboard Remot multi/vpn/tincd_bof 2013-04-22 average Tincd Post-Authentication multi/wyse/hagent_untrusted_hsdata 2009-07-10 excellent Wyse Rapport Ha netware/smb/lsass_cifs 2007-01-21 average Novell NetWare LSASS netware/sunrpc/pkernel_callit 2009-09-30 good NetWare 6.5 SunRPC osx/afp/loginext 2004-05-03 average AppleFileServer LoginExt P osx/arkeia/type77 2005-02-18 average Arkeia Backup Client Type osx/browser/mozilla_mchannel 2011-05-10 normal Mozilla Firefox 3.6.1 osx/browser/safari_file_policy 2011-10-12 normal Apple Safari file:// Arbit osx/browser/safari_metadata_archive 2006-02-21 excellent Safari Archive Me osx/browser/safari_user_assisted_download_launch 2014-03-10 manual Safari Use osx/browser/software_update 2007-12-17 excellent Apple OS X Software osx/email/mailapp_image_exec 2006-03-01 manual Mail.app Image Att osx/ftp/webstar_ftp_user 2004-07-13 average WebSTAR FTP Server osx/http/evocam_webserver 2010-06-01 average MacOS X EvoCam H osx/local/iokit_keyboard_root 2014-09-24 manual Mac OS X IOKit Keybo osx/local/nfs_mount_root 2014-04-11 normal Mac OS X NFS Mount osx/local/persistence 2012-04-01 excellent Mac OS X Persistent Pay osx/local/rootpipe 2015-04-09 great Apple OS X Rootpipe Privile osx/local/setuid_tunnelblick 2012-08-11 excellent Setuid Tunnelblick Privi osx/local/setuid_viscosity 2012-08-12 excellent Viscosity setuid-set Visco osx/local/sudo_password_bypass 2013-02-28 normal Mac OS X Sudo Pa osx/local/vmware_bash_function_root 2014-09-24 normal OS X VMWare Fu osx/mdns/upnp_location 2007-05-25 average Mac OS X mDNSResp osx/misc/ufo_ai 2009-10-28 average UFO: Alien Invasion IRC C osx/rtsp/quicktime_rtsp_content_type 2007-11-23 average MacOS X QuickTi osx/samba/lsa_transnames_heap 2007-05-14 average Samba lsa_io_tra osx/samba/trans2open 2003-04-07 great Samba trans2open Ove solaris/dtspcd/heap_noir 2002-07-10 great Solaris dtspcd Heap Ove solaris/lpd/sendmail_exec 2001-08-31 excellent Solaris LPD Command solaris/samba/lsa_transnames_heap 2007-05-14 average Samba lsa_io_tra solaris/samba/trans2open 2003-04-07 great Samba trans2open Ove solaris/sunrpc/sadmind_adm_build_path 2008-10-14 great Sun Solaris sadm solaris/sunrpc/sadmind_exec 2003-09-13 excellent Solaris sadmind Com solaris/sunrpc/ypupdated_exec 1994-12-12 excellent Solaris ypupdated C solaris/telnet/fuser 2007-02-12 excellent Sun Solaris Telnet Remote A solaris/telnet/ttyprompt 2002-01-18 excellent Solaris in.telnetd TTYPRO /dhcp/bash_environment 2014-09-24 excellent Dhclient Bash Enviro unix/ftp/proftpd_133c_backdoor 2010-12-02 excellent ProFTPD-1.3.3c Backd unix/ftp/proftpd_modcopy_exec 2015-04-22 excellent ProFTPD 1.3.5 Mod unix/ftp/vsftpd_234_backdoor 2011-07-03 excellent VSFTPD v2.3.4 Backd unix/http/contentkeeperweb_mimencode 2009-02-25 excellent ContentKeeper

Page 8 Sheet1 unix/http/ctek_skyrouter 2011-09-08 average CTEK SkyRouter 4200 a unix/http/freepbx_callmenum 2012-03-20 manual FreePBX 2.10.0 / 2.9 unix/http/lifesize_room 2011-07-13 excellent LifeSize Room Command unix/http/twiki_debug_plugins 2014-10-09 excellent TWiki Debugenableplu unix/http/vmturbo_vmtadmin_exec_noauth 2014-06-25 excellent VMTurbo Oper unix/irc/unreal_ircd_3281_backdoor 2010-06-12 excellent UnrealIRCD 3.2.8.1 unix/local/setuid_nmap 2012-07-19 excellent Setuid Nmap Exploit unix/misc/distcc_exec 2002-02-01 excellent DistCC Daemon Comma unix/misc/qnx_qconn_exec 2012-09-04 excellent QNX QCONN Remot unix/misc/spamassassin_exec 2006-06-06 excellent SpamAssassin spam unix/misc/xerox_mfp 2012-03-07 good Xerox Multifunction Printe unix/misc/zabbix_agent_exec 2009-09-10 excellent Zabbix Agent net.tcp unix/smtp/clamav_milter_blackhole 2007-08-24 excellent ClamAV Milter Blackh unix/smtp/exim4_string_format 2010-12-07 excellent Exim4 string_format unix/ssh/array_vxag_vapv_privkey_privesc 2014-02-03 excellent Array Networks unix/ssh/tectia_passwd_changereq 2012-12-01 excellent Tectia SSH USERA unix/webapp/actualanalyzer_ant_cookie_exec 2014-08-28 excellent ActualAnalyze unix/webapp/arkeia_upload_exec 2013-09-16 excellent Western Digital Arke unix/webapp/awstats_configdir_exec 2005-01-15 excellent AWStats configdir unix/webapp/awstats_migrate_exec 2006-05-04 excellent AWStats migrate unix/webapp/awstatstotals_multisort 2008-08-26 excellent AWStats Totals mu unix/webapp/barracuda_img_exec 2005-09-01 excellent Barracuda IMG.P unix/webapp/base_qry_common 2008-06-14 excellent BASE base_qry_co unix/webapp/basilic_diff_exec 2012-06-28 excellent Basilic 1.5.14 .php unix/webapp/cacti_graphimage_exec 2005-01-15 excellent Cacti graph_view unix/webapp/cakephp_cache_corruption 2010-11-15 excellent CakePHP Cach unix/webapp/carberp_backdoor_exec 2013-06-28 great Carberp Web Pan unix/webapp/citrix_access_gateway_exec 2010-12-21 excellent Citrix Access G unix/webapp/clipbucket_upload_exec 2013-10-04 excellent ClipBucket Remo unix/webapp/coppermine_piceditor 2008-01-30 excellent Coppermine Photo unix/webapp/datalife_preview_exec 2013-01-28 excellent DataLife Engine pr unix/webapp/dogfood_spell_exec 2009-03-03 excellent Dogfood CRM spe unix/webapp/egallery_upload_exec 2012-07-08 excellent EGallery PHP File unix/webapp/flashchat_upload_exec 2013-10-04 excellent FlashChat Arbitra unix/webapp/foswiki_maketext 2012-12-03 excellent MAKETEXT unix/webapp/freepbx_config_exec 2014-03-21 excellent FreePBX config.ph unix/webapp/generic_exec 1993-11-14 excellent Generic Web Applicat unix/webapp/get_simple_cms_upload_exec 2014-01-04 excellent GetSimpleCM unix/webapp/google_proxystylesheet_exec 2005-08-16 excellent Google Applian unix/webapp/graphite_pickle_exec 2013-08-20 excellent Graphite Web Unsa unix/webapp/guestbook_ssi_exec 1999-11-05 excellent Matt Wright guestb unix/webapp/hastymail_exec 2011-11-22 excellent Hastymail 2.1.1 RC1 unix/webapp/havalite_upload_exec 2013-06-17 excellent Havalite CMS Arbi unix/webapp/horde_unserialize_exec 2013-06-27 excellent Horde Framework unix/webapp/hybridauth_install_php_exec 2014-08-04 manual HybridAuth inst unix/webapp/instantcms_exec 2013-06-26 excellent InstantCMS 1.6 Rem unix/webapp/invision_pboard_unserialize_exec 2012-10-25 excellent Invision IP.Boa unix/webapp/joomla_akeeba_unserialize 2014-09-29 excellent Akeeba unix/webapp/joomla_comjce_imgmanager 2012-08-02 excellent Joomla Comp

Page 9 Sheet1 unix/webapp/joomla_media_upload_exec 2013-08-01 excellent Joomla Media unix/webapp/joomla_tinybrowser 2009-07-22 excellent Joomla 1.5.12 TinyB unix/webapp/kimai_sqli 2013-05-21 average Kimai v0.9.2 'db_restore unix/webapp/libretto_upload_exec 2013-06-14 excellent LibrettoCMS File M unix/webapp/maarch_letterbox_file_upload 2015-02-11 excellent Maarch LetterB unix/webapp/mambo_cache_lite 2008-06-14 excellent Cache_Lit unix/webapp/mitel_awc_exec 2010-12-12 excellent Mitel Audio and Web unix/webapp/moinmoin_twikidraw 2012-12-30 manual MoinMoin twikidra unix/webapp/mybb_backdoor 2011-10-06 excellent myBB 1.6.4 Backdo unix/webapp/nagios3_history_cgi 2012-12-09 great Nagios3 history.cgi H unix/webapp/nagios3_statuswml_ping 2009-06-22 excellent Nagios3 statusw unix/webapp/nagios_graph_explorer 2012-11-30 excellent Nagios XI Networ unix/webapp/narcissus_backend_exec 2012-11-14 excellent Narcissus Image unix/webapp/open_flash_chart_upload_exec 2009-12-14 great Open Flash Ch unix/webapp/openemr_sqli_privesc_upload 2013-09-16 excellent OpenEMR 4.1 unix/webapp/openemr_upload_exec 2013-02-13 excellent OpenEMR PHP unix/webapp/opensis_modname_exec 2012-12-04 excellent OpenSIS 'mod unix/webapp/openview_connectednodes_exec 2005-08-25 excellent HP Openvie unix/webapp/openx_banner_edit 2009-11-24 excellent OpenX banner-edit unix/webapp/oracle_vm_agent_utl 2010-10-12 excellent Oracle VM Server unix/webapp/oscommerce_filemanager 2009-08-31 excellent osCommerce 2 unix/webapp/pajax_remote_exec 2006-03-30 excellent PAJAX Remote Co unix/webapp/php_charts_exec 2013-01-16 excellent PHP-Charts v1.0 PH unix/webapp/php_eval 2008-10-13 manual Generic PHP Code Eva unix/webapp/php_include 2006-12-17 normal PHP Remote File Inclu unix/webapp/php_vbulletin_template 2005-02-25 excellent vBulletin misc.php unix/webapp/php_xmlrpc_eval 2005-06-29 excellent PHP XML-RPC Arbi unix/webapp/phpbb_highlight 2004-11-12 excellent phpBB viewtopic.php unix/webapp/phpmyadmin_config 2009-03-24 excellent PhpMyAdmin Con unix/webapp/projectpier_upload_exec 2012-10-08 excellent Project Pier Arbitr unix/webapp/projectsend_upload_exec 2014-12-02 excellent ProjectSend Arb unix/webapp/qtss_parse_xml_exec 2003-02-24 excellent QuickTime Stream unix/webapp/redmine_scm_exec 2010-12-19 excellent SCM Re unix/webapp/seportal_sqli_exec 2014-03-20 excellent SePortal SQLi Remo unix/webapp/simple_e_document_upload_exec 2014-01-23 excellent Simple E-D unix/webapp/sixapart_movabletype_storable_exec 2015-02-11 good SixApart Mo unix/webapp/skybluecanvas_exec 2014-01-28 excellent SkyBlueCanvas C unix/webapp/sphpblog_file_upload 2005-08-25 excellent Simple PHP Blog R unix/webapp/spip_connect_exec 2012-07-04 normal SPIP connect Para unix/webapp/squash_yaml_exec 2013-08-06 excellent Squash YAML Cod unix/webapp/squirrelmail_pgp_plugin 2007-07-09 manual SquirrelMail PGP unix/webapp/sugarcrm_unserialize_exec 2012-06-23 excellent SugarCRM unse unix/webapp/tikiwiki_graph_formula_exec 2007-10-10 excellent TikiWiki tiki-grap unix/webapp/tikiwiki_jhot_exec 2006-09-02 excellent TikiWiki jhot Remote unix/webapp/tikiwiki_unserialize_exec 2012-07-04 excellent Tiki unserializ unix/webapp/trixbox_langchoice 2008-07-09 manual Trixbox langChoice unix/webapp/tuleap_unserialize_exec 2014-11-27 excellent Tuleap PHP Unse unix/webapp/twiki_history 2005-09-14 excellent TWiki History TWikiUse unix/webapp/twiki_maketext 2012-12-15 excellent TWiki MAKETEXT Re

Page 10