SchneiderSec
blog / advisories /

CVEs and security advisories I've found and reported over the years. Where I've written up the details, the title links to the post; otherwise it links out to the NVD entry.

2021
  • Authenticated RCE
    Cisco • CVE-2021-1362
  • Reflected Cross-Site Scripting
    Cisco • CVE-2021-1407
  • Authenticated Remote Code Execution - Pi-Hole
    Pi-Hole • CVE-2021-32706
2020
  • Unauth File Deletion
    GLPI • CVE-2020-15175
  • Stored Cross-Site Scripting
    GLPI • CVE-2020-15177
  • Unauthenticated SQLi
    GLPI • CVE-2020-15176
  • API endpoint privilege escalation
    VMware • CVE-2020-3985
  • Unsafe handling of system parameters
    VMware • CVE-2020-4002
  • SQL injection Information Disclosure
    VMware • CVE-2020-4003
2019
  • EPA Agent vulnerability via Untrusted Search Path
    Eracent • CVE-2019-17446
© 2026 • SchneiderSec
Press Esc or click anywhere to close