2021-04-07 |
composr cms 10.0.36 - cross site scripting
|
webapps exploit |
php vulnerability |
2021-04-07 |
atlassian jira service desk 4.9.1 - unrestricted file upload to xss
|
webapps exploit |
multiple vulnerability |
2021-04-06 |
mini mouse 9.3.0 - local file inclusion / path traversal
|
webapps exploit |
ios vulnerability |
2021-04-06 |
google chrome 81.0.4044 v8 - remote code execution
|
remote exploit |
multiple vulnerability |
2021-04-06 |
google chrome 86.0.4240 v8 - remote code execution
|
remote exploit |
multiple vulnerability |
2021-04-05 |
mini mouse 9.2.0 - path traversal
|
webapps exploit |
windows vulnerability |
2021-04-05 |
mini mouse 9.2.0 - remote code execution
|
webapps exploit |
windows vulnerability |
2021-04-05 |
openemr 4.1.0 - 'u' sql injection
|
webapps exploit |
php vulnerability |
2021-04-05 |
basic shopping cart 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2021-04-05 |
simple food website 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2021-04-05 |
rockstar service - insecure file permissions
|
local exploit |
windows vulnerability |
2021-04-02 |
f5 big-ip 16.0.x - icontrol rest remote code execution (unauthenticated)
|
webapps exploit |
hardware vulnerability |
2021-04-02 |
zbl epon onu broadband router 1.0 - remote privilege escalation
|
webapps exploit |
hardware vulnerability |
2021-04-01 |
phppgadmin 7.13.0 - copy from program command execution (authenticated)
|
webapps exploit |
multiple vulnerability |
2021-04-01 |
scadabr 1.0 - arbitrary file upload (authenticated) (2)
|
webapps exploit |
linux vulnerability |
2021-04-01 |
scadabr 1.0 - arbitrary file upload (authenticated) (1)
|
webapps exploit |
windows vulnerability |
2021-04-01 |
latrix 0.6.0 - 'txtaccesscode' sql injection
|
webapps exploit |
multiple vulnerability |
2021-03-31 |
exploitation xxe via file uploads - paper
|
papers exploit |
multiple vulnerability |
2021-03-31 |
coursems 2.1 - 'name' stored xss
|
webapps exploit |
multiple vulnerability |
2021-03-31 |
dd-wrt 45723 - upnp buffer overflow (poc)
|
dos exploit |
hardware vulnerability |
2021-03-31 |
zabbix 3.4.7 - stored xss
|
webapps exploit |
php vulnerability |
2021-03-30 |
graphql attack - paper
|
papers exploit |
multiple vulnerability |
2021-03-30 |
openlitespeed 1.7.9 - 'notes' stored cross-site scripting
|
webapps exploit |
multiple vulnerability |
2021-03-30 |
getsimple cms 3.3.16 - reflected xss to rce
|
webapps exploit |
php vulnerability |
2021-03-29 |
syncbreeze 10.1.16 - xml parsing stack-based buffer overflow
|
webapps exploit |
windows vulnerability |
2021-03-29 |
novel boutique house-plus 3.5.1 - arbitrary file download
|
webapps exploit |
java vulnerability |
2021-03-29 |
budget management system 1.0 - 'budget title' stored xss
|
webapps exploit |
php vulnerability |
2021-03-29 |
equipment inventory system 1.0 - 'multiple' stored xss
|
webapps exploit |
php vulnerability |
2021-03-29 |
concrete5 8.5.4 - 'name' stored xss
|
webapps exploit |
php vulnerability |
2021-03-29 |
tp-link devices - 'setdefaulthostname' stored cross-site scripting (unauthenticated)
|
webapps exploit |
hardware vulnerability |
2021-03-29 |
vsftpd 3.0.3 - remote denial of service
|
remote exploit |
multiple vulnerability |
2021-03-29 |
wordpress plugin wp super cache 1.7.1 - remote code execution (authenticated)
|
webapps exploit |
php vulnerability |
2021-03-26 |
exploiting xxe to ssrf - paper
|
papers exploit |
multiple vulnerability |
2021-03-26 |
apache ghostcat cve 2020-1938 - paper
|
papers exploit |
multiple vulnerability |
2021-03-26 |
hacking jwt tokens for fun and profit - paper
|
papers exploit |
multiple vulnerability |
2021-03-26 |
moodle 3.10.3 - 'label' persistent cross site scripting
|
webapps exploit |
php vulnerability |
2021-03-26 |
regis inventory and monitoring system 1.0 - 'item list' stored xss
|
webapps exploit |
php vulnerability |
2021-03-26 |
getsimple cms custom js plugin 0.1 - csrf to persistent xss
|
webapps exploit |
php vulnerability |
2021-03-25 |
dolibarr erp/crm 11.0.4 - file upload restrictions bypass (authenticated rce)
|
webapps exploit |
php vulnerability |
2021-03-25 |
genexis platinum-4410 p4410-v2-1.31a - 'start_addr' persistent cross-site scripting
|
webapps exploit |
hardware vulnerability |
2021-03-25 |
linksys ea7500 2.0.8.194281 - cross-site scripting
|
webapps exploit |
hardware vulnerability |
2021-03-25 |
ovidentia 6 - 'id' sql injection (authenticated)
|
webapps exploit |
php vulnerability |
2021-03-24 |
ext2fsd v0.68 - 'ext2srv' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-23 |
codiad 2.8.4 - remote code execution (authenticated)
|
webapps exploit |
multiple vulnerability |
2021-03-23 |
elodea event collector 4.9.3 - 'elodeaeventcollectorservice' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-23 |
actividentity 8.2 - 'ac.sharedstore' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-23 |
elan touchpad 15.2.13.1_x64_whql - 'etdservice' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-23 |
hi-rez studios 5.1.6.3 - 'hipatchservice' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-23 |
hotel and lodge management system 1.0 - 'customer details' stored xss
|
webapps exploit |
php vulnerability |
2021-03-23 |
mybb 1.8.25 - poll vote count sql injection
|
webapps exploit |
php vulnerability |