2021-01-06 |
gitea 1.7.5 - remote code execution
|
webapps exploit |
multiple vulnerability |
2021-01-06 |
paperstream ip (twain) 1.42.0.5685 - local privilege escalation
|
local exploit |
windows vulnerability |
2021-01-06 |
resumes management and job application website 1.0 - multiple stored xss
|
webapps exploit |
php vulnerability |
2021-01-06 |
resumes management and job application website 1.0 - rce (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-01-06 |
winavr version 20100110 - insecure folder permissions
|
local exploit |
windows vulnerability |
2021-01-06 |
newgen correspondence management system (corms) egov 12.0 - idor
|
webapps exploit |
multiple vulnerability |
2021-01-06 |
wordpress plugin wp24 domain check 1.6.2 - 'fieldnamedomain' stored cross site scripting
|
webapps exploit |
php vulnerability |
2021-01-06 |
responsive e-learning system 1.0 - stored cross site scripting
|
webapps exploit |
php vulnerability |
2021-01-06 |
responsive e-learning system 1.0 - unrestricted file upload to rce
|
webapps exploit |
php vulnerability |
2021-01-06 |
wordpress plugin litespeed cache 3.6 - 'server_ip' cross-site scripting
|
webapps exploit |
php vulnerability |
2021-01-06 |
expense tracker 1.0 - 'expense name' stored cross-site scripting
|
webapps exploit |
php vulnerability |
2021-01-06 |
ipeakcms 3.5 - boolean-based blind sqli
|
webapps exploit |
multiple vulnerability |
2021-01-06 |
iobit uninstaller 10 pro - unquoted service path
|
local exploit |
windows vulnerability |
2021-01-06 |
dirsearch 0.4.1 - csv injection
|
local exploit |
python vulnerability |
2021-01-06 |
advanced webhost billing system 3.7.0 - cross-site request forgery (csrf)
|
webapps exploit |
php vulnerability |
2021-01-05 |
egavilanmedia user registration & login system with admin panel 1.0 - multiple stored cross-site scripting
|
webapps exploit |
multiple vulnerability |
2021-01-05 |
klog server 2.4.1 - command injection (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-01-05 |
online learning management system 1.0 - rce (authenticated)
|
webapps exploit |
php vulnerability |
2021-01-05 |
csz cms 1.2.9 - multiple cross-site scripting
|
webapps exploit |
php vulnerability |
2021-01-05 |
fluentd td-agent plugin 4.0.1 - insecure folder permission
|
local exploit |
windows vulnerability |
2021-01-05 |
cassandra web 0.5.0 - remote file read
|
webapps exploit |
linux vulnerability |
2021-01-05 |
hpe edgeline infrastructure manager 1.0 - multiple remote vulnerabilities
|
webapps exploit |
multiple vulnerability |
2021-01-05 |
zoom meeting connector 4.6.239.20200613 - remote root exploit (authenticated)
|
webapps exploit |
linux vulnerability |
2021-01-05 |
responsive filemanager 9.13.4 - 'path' path traversal
|
webapps exploit |
php vulnerability |
2021-01-05 |
baby care system 1.0 - 'post title' stored xss
|
webapps exploit |
php vulnerability |
2021-01-05 |
responsive elearning system 1.0 - 'id' sql injection
|
webapps exploit |
php vulnerability |
2021-01-05 |
online movie streaming1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2021-01-05 |
wordpress plugin wp-paginate 2.1.3 - 'preset' stored xss
|
webapps exploit |
php vulnerability |
2021-01-05 |
wordpress plugin stripe payments 2.0.39 - 'acceptstripepayments-settings[currency_code]' stored xss
|
webapps exploit |
php vulnerability |
2021-01-05 |
resumes management and job application website 1.0 - authentication bypass (sql injection)
|
webapps exploit |
php vulnerability |
2021-01-05 |
house rental and property listing 1.0 - multiple stored xss
|
webapps exploit |
php vulnerability |
2021-01-05 |
incomcms 2.0 - insecure file upload
|
webapps exploit |
multiple vulnerability |
2021-01-05 |
intel(r) matrix storage event monitor x86 8.0.0.1039 - 'iaantmon' unquoted service path
|
local exploit |
windows vulnerability |
2021-01-04 |
parallels remote application server (ras) 18 ip disclosure - paper
|
papers exploit |
windows vulnerability |
2021-01-04 |
arteco web client dvr/nvr - 'sessionid' brute force
|
webapps exploit |
windows vulnerability |
2021-01-04 |
click2magic 1.1.5 - stored cross-site scripting
|
webapps exploit |
multiple vulnerability |
2021-01-04 |
subrion cms 4.2.1 - 'avatar[path]' xss
|
webapps exploit |
php vulnerability |
2021-01-04 |
cms made simple 2.2.15 - rce (authenticated)
|
webapps exploit |
php vulnerability |
2021-01-04 |
sar2html 3.2.1 - 'plot' remote code execution
|
webapps exploit |
php vulnerability |
2021-01-04 |
advanced comment system 1.0 - 'acs_path' path traversal
|
webapps exploit |
php vulnerability |
2021-01-04 |
knockpy 4.1.1 - csv injection
|
local exploit |
python vulnerability |
2021-01-04 |
a hands-on introduction to insecure deserialization - paper
|
papers exploit |
python vulnerability |
2021-01-04 |
mantis bug tracker 2.24.3 - 'access' sql injection
|
webapps exploit |
php vulnerability |
2021-01-04 |
4images v1.7.11 - 'profile image' stored cross-site scripting
|
webapps exploit |
php vulnerability |
2021-01-04 |
wordpress core 5.2.2 - 'post previews' xss
|
webapps exploit |
php vulnerability |
2021-01-04 |
easy cd & dvd cover creator 4.13 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-01-04 |
minitool shadowmaker 3.2 - 'mtagentservice' unquoted service path
|
local exploit |
windows vulnerability |
2020-12-24 |
apartment visitors management system 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-12-24 |
gitlab 11.4.7 - rce (authenticated)
|
webapps exploit |
ruby vulnerability |
2020-12-24 |
wordpress plugin wp-postratings 1.86 - 'postratings_image' cross-site scripting
|
webapps exploit |
php vulnerability |