2020-12-10 |
wordpress plugin popup builder 3.69.6 - multiple stored cross site scripting
|
webapps exploit |
php vulnerability |
2020-12-10 |
library management system 2.0 - auth bypass sql injection
|
webapps exploit |
php vulnerability |
2020-12-10 |
openfire 4.6.0 - 'path' stored xss
|
webapps exploit |
jsp vulnerability |
2020-12-10 |
opencart 3.0.3.6 - cross site request forgery
|
webapps exploit |
php vulnerability |
2020-12-10 |
barcodes generator 1.0 - 'name' stored cross site scripting
|
webapps exploit |
php vulnerability |
2020-12-10 |
pdf complete 3.5.310.2002 - 'pdfsvc.exe' unquoted service path
|
local exploit |
windows vulnerability |
2020-12-09 |
mobile app security overview - paper
|
papers exploit |
multiple vulnerability |
2020-12-09 |
task management system 1.0 - 'id' sql injection
|
webapps exploit |
php vulnerability |
2020-12-09 |
task management system 1.0 - unrestricted file upload to remote code execution
|
webapps exploit |
php vulnerability |
2020-12-09 |
task management system 1.0 - 'first name and last name' stored xss
|
webapps exploit |
php vulnerability |
2020-12-09 |
tibco obfuscationengine 5.11 - fixed key password decryption
|
local exploit |
multiple vulnerability |
2020-12-09 |
vestacp 0.9.8-26 - 'backup' information disclosure
|
webapps exploit |
multiple vulnerability |
2020-12-09 |
vestacp 0.9.8-26 - 'loginas' insufficient session validation
|
webapps exploit |
multiple vulnerability |
2020-12-09 |
huawei hedex lite 200r006c00spc005 - path traversal
|
remote exploit |
windows vulnerability |
2020-12-09 |
dup scout enterprise 10.0.18 - 'sid' remote buffer overflow (seh)
|
remote exploit |
windows vulnerability |
2020-12-09 |
smartermail build 6985 - remote code execution
|
remote exploit |
windows vulnerability |
2020-12-08 |
employee performance evaluation system 1.0 - 'task and description' persistent cross site scripting
|
webapps exploit |
php vulnerability |
2020-12-08 |
online bus ticket reservation 1.0 - sql injection
|
webapps exploit |
php vulnerability |
2020-12-07 |
druva insync windows client 6.6.3 - local privilege escalation (powershell)
|
local exploit |
windows vulnerability |
2020-12-07 |
dup scout enterprise 10.0.18 - 'online_registration' remote buffer overflow
|
remote exploit |
windows vulnerability |
2020-12-07 |
vbulletin 5.6.3 - 'group' cross site scripting
|
webapps exploit |
php vulnerability |
2020-12-07 |
savsoft quiz 5 - 'skype id' stored xss
|
webapps exploit |
php vulnerability |
2020-12-07 |
rarmaradio 2.72.5 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2020-12-07 |
tapinradio 2.13.7 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2020-12-07 |
kite 1.2020.1119.0 - 'kiteservice' unquoted service path
|
local exploit |
windows vulnerability |
2020-12-07 |
cyber cafe management systemproject (ccms) 1.0 - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-12-07 |
rumble mail server 0.51.3135 - 'rumble_win32.exe' unquoted service path
|
local exploit |
windows vulnerability |
2020-12-04 |
zabbix 5.0.0 - stored xss via url widget iframe
|
webapps exploit |
php vulnerability |
2020-12-04 |
firmware analysis and simulation - paper
|
papers exploit |
multiple vulnerability |
2020-12-04 |
encrypted linux x86-64 loadable kernel modules - paper
|
papers exploit |
linux vulnerability |
2020-12-04 |
cms made simple 2.2.15 - stored cross-site scripting via svg file upload (authenticated)
|
webapps exploit |
php vulnerability |
2020-12-04 |
laravel nova 3.7.0 - 'range' dos
|
webapps exploit |
php vulnerability |
2020-12-04 |
forma lms 2.3 - 'first & last name' stored cross-site scripting
|
webapps exploit |
php vulnerability |
2020-12-04 |
savsoft quiz 5 - 'field_title' stored cross-site scripting
|
webapps exploit |
php vulnerability |
2020-12-04 |
chromium 83 - full csp bypass
|
local exploit |
multiple vulnerability |
2020-12-04 |
testa online test management system 3.4.7 - 'q' sql injection
|
webapps exploit |
multiple vulnerability |
2020-12-04 |
minicms 1.10 - 'content box' stored xss
|
webapps exploit |
php vulnerability |
2020-12-04 |
phpscript-sgh 0.1.0 - time based blind sql injection
|
webapps exploit |
multiple vulnerability |
2020-12-04 |
idt pc audio 1.0.6499.0 - 'stacsv' unquoted service path
|
local exploit |
windows vulnerability |
2020-12-04 |
composr cms 10.0.34 - 'banners' persistent cross site scripting
|
webapps exploit |
php vulnerability |
2020-12-04 |
wordpress plugin canto 1.3.0 - blind ssrf (unauthenticated)
|
webapps exploit |
multiple vulnerability |
2020-12-03 |
invision community 4.5.4 - 'field name' stored cross-site scripting
|
webapps exploit |
multiple vulnerability |
2020-12-03 |
sony bravia digital signage 1.7.8 - system api information disclosure
|
webapps exploit |
hardware vulnerability |
2020-12-03 |
sony bravia digital signage 1.7.8 - unauthenticated remote file inclusion
|
webapps exploit |
hardware vulnerability |
2020-12-03 |
mojoportal forums 2.7.0.0 - 'title' persistent cross-site scripting
|
webapps exploit |
multiple vulnerability |
2020-12-03 |
online matrimonial project 1.0 - authenticated remote code execution
|
webapps exploit |
php vulnerability |
2020-12-03 |
egavilanmedia address book 1.0 exploit - sqli auth bypass
|
webapps exploit |
multiple vulnerability |
2020-12-03 |
coastercms 5.8.18 - stored xss
|
webapps exploit |
php vulnerability |
2020-12-02 |
microsoft windows - win32k elevation of privilege
|
local exploit |
windows vulnerability |
2020-12-02 |
wordpress plugin wp-filemanager 6.8 - rce
|
webapps exploit |
php vulnerability |