2021-11-03 |
eclipse jetty 11.0.5 - sensitive file disclosure
|
webapps exploit |
java vulnerability |
2021-11-03 |
fuel cms 1.4.1 - remote code execution (3)
|
webapps exploit |
php vulnerability |
2021-11-03 |
wordpress plugin hotel listing 3 - 'multiple' cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-03 |
phpjabbers simple cms 5 - 'name' persistent cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-02 |
codiad 2.8.4 - remote code execution (authenticated) (4)
|
webapps exploit |
multiple vulnerability |
2021-11-02 |
i3 international annexxus cameras ax-n 5.2.0 - application logic flaw
|
webapps exploit |
multiple vulnerability |
2021-11-02 |
10-strike network inventory explorer pro 9.31 - buffer overflow (seh)
|
local exploit |
windows vulnerability |
2021-11-02 |
youtube video grabber 1.9.9.1 - buffer overflow (seh)
|
local exploit |
windows vulnerability |
2021-11-02 |
kingdia cd extractor 3.0.2 - buffer overflow (seh)
|
local exploit |
windows vulnerability |
2021-11-02 |
ericsson network location mps gmpc21 - privilege escalation (metasploit)
|
webapps exploit |
multiple vulnerability |
2021-11-02 |
ericsson network location mps gmpc21 - remote code execution (rce) (metasploit)
|
webapps exploit |
multiple vulnerability |
2021-11-02 |
employee record management system 1.2 - 'empid' sql injection (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-11-02 |
dynojet power core 2.3.0 - unquoted service path
|
local exploit |
windows vulnerability |
2021-10-29 |
mini-xml 3.2 - heap overflow
|
local exploit |
linux vulnerability |
2021-10-29 |
movable type 7 r.5002- xmlrpc api os command injection (metasploit)
|
webapps exploit |
cgi vulnerability |
2021-10-29 |
webctrl oem 6.5 - 'locale' reflected cross-site scripting (xss)
|
webapps exploit |
multiple vulnerability |
2021-10-29 |
umbraco v8.14.1 - 'baseurl' ssrf
|
webapps exploit |
aspx vulnerability |
2021-10-28 |
phpgurukul hostel management system 2.1 - cross-site request forgery (csrf) to cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-10-28 |
wordpress plugin supsystic contact form1.7.18 - 'label' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-10-26 |
analyzing java heap dumps - paper
|
papers exploit |
java vulnerability |
2021-10-26 |
wordpress plugin filterable portfolio gallery 1.0 - 'title' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-10-25 |
phpmyadmin 4.8.1 - remote code execution (rce)
|
webapps exploit |
php vulnerability |
2021-10-25 |
wordpress 4.9.6 - arbitrary file deletion (authenticated) (2)
|
webapps exploit |
php vulnerability |
2021-10-25 |
wordpress plugin ninja tables 4.1.7 - stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-10-25 |
wordpress plugin media-tags 3.2.0.2 - stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-10-25 |
engineers online portal 1.0 - 'id' sql injection
|
webapps exploit |
php vulnerability |
2021-10-25 |
engineers online portal 1.0 - 'multiple' authentication bypass
|
webapps exploit |
php vulnerability |
2021-10-25 |
engineers online portal 1.0 - 'multiple' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-10-25 |
online event booking and reservation system 1.0 - 'reason' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-10-25 |
gestionale open 11.00.00 - local privilege escalation
|
local exploit |
windows vulnerability |
2021-10-25 |
openclinic ga 5.194.18 - local privilege escalation
|
local exploit |
windows vulnerability |
2021-10-25 |
balbooa joomla forms builder 2.0.6 - sql injection (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-10-25 |
apache http server 2.4.50 - remote code execution (rce) (2)
|
webapps exploit |
multiple vulnerability |
2021-10-25 |
build smart erp 21.0817 - 'eidvalue' sql injection (unauthenticated)
|
webapps exploit |
asp vulnerability |
2021-10-25 |
engineers online portal 1.0 - file upload remote code execution (rce)
|
webapps exploit |
php vulnerability |
2021-10-25 |
netgear genie 2.4.64 - unquoted service path
|
local exploit |
windows vulnerability |
2021-10-25 |
wordpress plugin taxopress 3.0.7.1 - stored cross-site scripting (xss) (authenticated)
|
webapps exploit |
php vulnerability |
2021-10-25 |
hikvision web server build 210702 - command injection
|
webapps exploit |
hardware vulnerability |
2021-10-22 |
online course registration 1.0 - blind boolean-based sql injection (authenticated)
|
webapps exploit |
php vulnerability |
2021-10-22 |
clinic management system 1.0 - sql injection to remote code execution
|
webapps exploit |
php vulnerability |
2021-10-22 |
jetty 9.4.37.v20210219 - information disclosure
|
webapps exploit |
java vulnerability |
2021-10-21 |
easy chat server 3.1 - directory traversal and arbitrary file read
|
webapps exploit |
windows vulnerability |
2021-10-21 |
brute-force login and bypass account lockout on elabftw 1.8.5 - paper
|
papers exploit |
multiple vulnerability |
2021-10-21 |
small crm 3.0 - 'description' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-10-21 |
nimax 5.3.1f0 - 'visa alias' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-10-21 |
nimax 5.3.1 - 'remote visa system' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-10-20 |
dolibarr erp-crm 14.0.2 - stored cross-site scripting (xss) / privilege escalation
|
webapps exploit |
php vulnerability |
2021-10-20 |
macro expert 4.7 - unquoted service path
|
local exploit |
windows vulnerability |
2021-10-20 |
sonicwall sma 10.2.1.0-17sv - password reset
|
webapps exploit |
hardware vulnerability |
2021-10-19 |
online motorcycle (bike) rental system 1.0 - blind time-based sql injection (unauthenticated)
|
webapps exploit |
php vulnerability |