2020-04-29 |
easy transfer 1.7 for ios - directory traversal
|
webapps exploit |
ios vulnerability |
2020-04-29 |
school erp pro 1.0 - arbitrary file read
|
webapps exploit |
php vulnerability |
2020-04-29 |
open-audit professional 3.3.1 - remote code execution
|
webapps exploit |
php vulnerability |
2020-04-28 |
school erp pro 1.0 - remote code execution
|
webapps exploit |
php vulnerability |
2020-04-28 |
nvidia update service daemon 1.0.21 - 'nvupdatusservice' unquoted service path
|
local exploit |
windows vulnerability |
2020-04-28 |
school erp pro 1.0 - 'es_messagesid' sql injection
|
webapps exploit |
php vulnerability |
2020-04-28 |
cloudme 1.11.2 - buffer overflow (poc)
|
remote exploit |
windows vulnerability |
2020-04-28 |
docker-credential-wincred.exe - privilege escalation (metasploit)
|
local exploit |
windows vulnerability |
2020-04-27 |
source engine cs:go buildid: 4937372 - arbitrary code execution
|
local exploit |
macos vulnerability |
2020-04-27 |
maian support helpdesk 4.3 - cross-site request forgery (add admin)
|
webapps exploit |
php vulnerability |
2020-04-27 |
online course registration 2.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-04-27 |
netis e1+ v1.2.32533 - unauthenticated wifi password leak
|
webapps exploit |
hardware vulnerability |
2020-04-27 |
online shopping system advanced 1.0 - 'p' sql injection
|
webapps exploit |
php vulnerability |
2020-04-27 |
netis e1+ 1.2.32533 - backdoor account (root)
|
webapps exploit |
hardware vulnerability |
2020-04-27 |
php-fusion 9.03.50 - 'edit profile' arbitrary file upload
|
webapps exploit |
php vulnerability |
2020-04-24 |
furukawa electric consciusmap 2.8.1 - remote code execution
|
webapps exploit |
java vulnerability |
2020-04-24 |
linux/x64 - password (p3wp3wl4zerz) + bind (0.0.0.0:4444/tcp) shell (/bin/bash) + null-free shellcode (272 bytes)
|
shellcode exploit |
linux_x86-64 vulnerability |
2020-04-24 |
popcorn time 6.2 - 'update service' unquoted service path
|
local exploit |
windows vulnerability |
2020-04-24 |
edimax ew-7438rpn 1.13 - remote code execution
|
webapps exploit |
hardware vulnerability |
2020-04-24 |
espocrm 5.8.5 - privilege escalation
|
webapps exploit |
multiple vulnerability |
2020-04-23 |
sky file 2.1.0 ios - directory traversal
|
webapps exploit |
ios vulnerability |
2020-04-23 |
library cms powerful book management system 2.2.0 - session fixation
|
webapps exploit |
php vulnerability |
2020-04-23 |
zen load balancer 3.10.1 - directory traversal (metasploit)
|
webapps exploit |
cgi vulnerability |
2020-04-23 |
complaint management system 4.2 - cross-site request forgery (delete user)
|
webapps exploit |
php vulnerability |
2020-04-23 |
complaint management system 4.2 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-04-23 |
complaint management system 4.2 - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-04-23 |
user management system 2.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-04-23 |
user management system 2.0 - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-04-22 |
mahara 19.10.2 cms - persistent cross-site scripting
|
webapps exploit |
linux vulnerability |
2020-04-22 |
edimax ew-7438rpn - cross-site request forgery (mac filtering)
|
webapps exploit |
hardware vulnerability |
2020-04-22 |
edimax ew-7438rpn - information disclosure (wifi password)
|
webapps exploit |
hardware vulnerability |
2020-04-22 |
rm downloader 3.1.3.2.2010.06.13 - 'load' buffer overflow (seh)
|
local exploit |
windows vulnerability |
2020-04-21 |
neowise carbonftp 1.4 - insecure proprietary password encryption
|
remote exploit |
windows vulnerability |
2020-04-21 |
p5 fnip-8x16a fnip-4xsh 1.0.20 - cross-site request forgery (add admin)
|
webapps exploit |
hardware vulnerability |
2020-04-21 |
jizhi cms 1.6.7 - arbitrary file download
|
webapps exploit |
php vulnerability |
2020-04-21 |
nsclient++ 0.5.2.35 - authenticated remote code execution
|
webapps exploit |
json vulnerability |
2020-04-21 |
oracle solaris common desktop environment 1.6 - local privilege escalation
|
local exploit |
solaris vulnerability |
2020-04-21 |
iqrouter 3.3.1 firmware - remote code execution
|
webapps exploit |
hardware vulnerability |
2020-04-21 |
csz cms 1.2.7 - 'title' html injection
|
webapps exploit |
php vulnerability |
2020-04-21 |
pmb 5.6 - 'logid' sql injection
|
webapps exploit |
php vulnerability |
2020-04-21 |
windows/x86 - msvcrt system + dynamic null-free + add rdp admin + disable firewall + enable rdp shellcode (644 bytes)
|
shellcode exploit |
windows_x86 vulnerability |
2020-04-21 |
csz cms 1.2.7 - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-04-20 |
unraid 6.8.0 - auth bypass php code execution (metasploit)
|
remote exploit |
linux vulnerability |
2020-04-20 |
atomic alarm clock x86 6.3 - 'atomicalarmclock' unquoted service path
|
local exploit |
windows_x86 vulnerability |
2020-04-20 |
rubo dicom viewer 2.0 - buffer overflow (seh)
|
local exploit |
windows vulnerability |
2020-04-20 |
nsauditor 3.2.1.0 - buffer overflow (seh+aslr bypass (3 bytes overwrite))
|
local exploit |
windows vulnerability |
2020-04-20 |
wordpress plugin simple file list 5.4 - remote code execution
|
webapps exploit |
php vulnerability |
2020-04-20 |
fork cms 5.8.0 - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-04-20 |
prestashop 1.7.6.4 - cross-site request forgery
|
webapps exploit |
php vulnerability |
2020-04-20 |
atomic alarm clock 6.3 - stack overflow (unicode+seh)
|
local exploit |
windows vulnerability |