![](https://doddsecurity.com/wp-content/uploads/2023/05/geoserver2-400x200.png)
![](https://doddsecurity.com/wp-content/uploads/2023/05/geoserver2-400x200.png)
![](https://doddsecurity.com/wp-content/uploads/2023/04/supportcandy-400x200.png)
Unauthorized Account Creation in SupportCandy
![](https://doddsecurity.com/wp-content/uploads/2019/07/opencats-400x200.png)
XML External Entity Injection (XXE) in OpenCats Applicant Tracking System
![](https://doddsecurity.com/wp-content/uploads/2018/12/doddsecurity-post6-400x200.png)
Command Injection on Palo Alto Networks Expedition
![](https://doddsecurity.com/wp-content/uploads/2018/12/IPFire-Firewall-Post5-3-400x200.png)
Command Injection on IPFire Firewalls
![](https://doddsecurity.com/wp-content/uploads/2018/12/doddsecurity-post4-400x200.png)
Command Injection on pfSense Firewalls
![](https://doddsecurity.com/wp-content/uploads/2018/12/DoddSecurity-post3-400x200.png)
Command Injection on the Monitoring Appliances
![](https://doddsecurity.com/wp-content/uploads/2018/12/doddsecurity-post2-400x200.png)
Remote Code Execution in the Avatars
![](https://doddsecurity.com/wp-content/uploads/2018/12/DoddSec-Post1-400x200.png)