2021-09-23 |
wordpress plugin fitness calculators 1.9.5 - cross-site request forgery (csrf)
|
webapps exploit |
php vulnerability |
2021-09-23 |
wordpress plugin advanced order export for woocommerce 3.1.7 - reflected cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-09-23 |
backdrop cms 1.20.0 - 'multiple' cross-site request forgery (csrf)
|
webapps exploit |
php vulnerability |
2021-09-23 |
redragon gaming mouse - 'redragon_mouse.sys' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-09-23 |
wordpress plugin 3dprint lite 1.9.1.4 - arbitrary file upload
|
webapps exploit |
php vulnerability |
2021-09-23 |
gurock testrail 7.2.0.3014 - 'files.md5' improper access control
|
webapps exploit |
multiple vulnerability |
2021-09-22 |
online reviewer system 1.0 - remote code execution (rce) (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-09-22 |
sentry 8.2.0 - remote code execution (rce) (authenticated)
|
webapps exploit |
python vulnerability |
2021-09-22 |
cloudron 6.2 - 'returnto ' cross site scripting (reflected)
|
webapps exploit |
multiple vulnerability |
2021-09-22 |
opencats 0.9.4-2 - 'docx ' xml external entity injection (xxe)
|
webapps exploit |
php vulnerability |
2021-09-22 |
e107 cms 2.3.0 - remote code execution (rce) (authenticated)
|
webapps exploit |
php vulnerability |
2021-09-22 |
totalav 5.15.69 - unquoted service path
|
local exploit |
windows vulnerability |
2021-09-22 |
filerun 2021.03.26 - remote code execution (rce) (authenticated)
|
webapps exploit |
php vulnerability |
2021-09-22 |
simple attendance system 1.0 - unauthenticated blind sqli
|
webapps exploit |
php vulnerability |
2021-09-21 |
yenkee hornet gaming mouse - 'gm312fltr.sys' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-09-21 |
websitebaker 2.13.0 - remote code execution (rce) (authenticated)
|
webapps exploit |
php vulnerability |
2021-09-21 |
securing authentication and authorization - paper
|
papers exploit |
multiple vulnerability |
2021-09-21 |
budget and expense tracker system 1.0 -remote code execution (rce) (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-09-20 |
budget and expense tracker system 1.0 - authenticated bypass
|
webapps exploit |
php vulnerability |
2021-09-20 |
church management system 1.0 - remote code execution (rce) (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-09-20 |
online food ordering system 2.0 -remote code execution (rce) (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-09-20 |
wordpress 5.7 - 'media library' xml external entity injection (xxe) (authenticated)
|
webapps exploit |
php vulnerability |
2021-09-20 |
church management system 1.0 - 'search' sql injection (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-09-20 |
t-soft e-commerce 4 - change 'admin credentials' cross-site request forgery (csrf)
|
webapps exploit |
multiple vulnerability |
2021-09-17 |
simple attendance system 1.0 - authenticated bypass
|
webapps exploit |
php vulnerability |
2021-09-17 |
library management system 1.0 - blind time-based sql injection (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-09-17 |
wordpress plugin woocommerce booster plugin 5.4.3 - authentication bypass
|
webapps exploit |
php vulnerability |
2021-09-16 |
impresscms 1.4.2 - remote code execution (rce) (authenticated)
|
webapps exploit |
php vulnerability |
2021-09-15 |
alphaweb xe - file upload remote code execution (rce) (authenticated)
|
webapps exploit |
php vulnerability |
2021-09-15 |
evolution cms 3.1.6 - remote code execution (rce) (authenticated)
|
webapps exploit |
php vulnerability |
2021-09-15 |
seowon 130-slc router - 'queriescnt' remote code execution (unauthenticated)
|
webapps exploit |
hardware vulnerability |
2021-09-15 |
support board 3.3.3 - 'multiple' sql injection (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-09-14 |
purchase order management system 1.0 - remote file upload
|
webapps exploit |
php vulnerability |
2021-09-13 |
windows/x64 - reverse tcp (192.168.201.11:4444) shellcode (330 bytes)
|
shellcode exploit |
windows_x86-64 vulnerability |
2017-01-14 |
adobe flash player - integer overflow
|
remote exploit |
multiple vulnerability |
2021-09-13 |
facebook parlai 1.0.0 -deserialization of untrusted data in parlai
|
local exploit |
python vulnerability |
2021-09-13 |
apartment visitor management system (avms) 1.0 - 'username' sql injection
|
webapps exploit |
php vulnerability |
2021-09-13 |
wordpress plugin download from files 1.48 - arbitrary file upload
|
webapps exploit |
php vulnerability |
2021-09-13 |
ecoa building automation system - arbitrary file deletion
|
webapps exploit |
hardware vulnerability |
2021-09-13 |
ecoa building automation system - local file disclosure
|
webapps exploit |
hardware vulnerability |
2021-09-13 |
ecoa building automation system - remote privilege escalation
|
webapps exploit |
hardware vulnerability |
2021-09-13 |
ecoa building automation system - missing encryption of sensitive information
|
local exploit |
hardware vulnerability |
2021-09-13 |
ecoa building automation system - hard-coded credentials ssh access
|
remote exploit |
hardware vulnerability |
2021-09-13 |
ecoa building automation system - configuration download information disclosure
|
webapps exploit |
hardware vulnerability |
2021-09-13 |
ecoa building automation system - cookie poisoning authentication bypass
|
webapps exploit |
hardware vulnerability |
2021-09-13 |
ecoa building automation system - 'multiple' cross-site request forgery (csrf)
|
webapps exploit |
hardware vulnerability |
2021-09-13 |
ecoa building automation system - directory traversal content disclosure
|
webapps exploit |
hardware vulnerability |
2021-09-13 |
ecoa building automation system - path traversal arbitrary file upload
|
webapps exploit |
hardware vulnerability |
2021-09-13 |
ecoa building automation system - weak default credentials
|
webapps exploit |
hardware vulnerability |
2021-09-13 |
men salon management system 1.0 - multiple vulnerabilities
|
webapps exploit |
php vulnerability |