2018-05-02 |
cockpit cms 0.4.4 < 0.5.5 - server-side request forgery
|
webapps exploit |
php vulnerability |
2018-05-02 |
webkit - 'webcore::jselementscrollheightgetter' use-after-free
|
dos exploit |
multiple vulnerability |
2018-05-02 |
easy mpeg to dvd burner 1.7.11 - local buffer overflow (seh)
|
local exploit |
windows vulnerability |
2018-05-02 |
libreoffice/open office - '.odt' information disclosure
|
local exploit |
windows vulnerability |
2018-05-01 |
wordpress plugin responsive cookie consent 1.7 / 1.6 / 1.5 - (authenticated) persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2018-04-30 |
apple macos/ios - reportcrash mach port replacement due to failure to respect mig ownership rules
|
dos exploit |
multiple vulnerability |
2018-04-30 |
apple macos 10.13.2 - double mach_port_deallocate in kextd due to failure to comply with mig ownership rules
|
dos exploit |
macos vulnerability |
2018-04-30 |
nagios xi 5.2.6 < 5.2.9 / 5.3 / 5.4 - chained remote root
|
webapps exploit |
php vulnerability |
2018-04-30 |
wordpress plugin form maker 1.12.20 - csv injection
|
webapps exploit |
php vulnerability |
2018-04-30 |
navicat < 12.0.27 - oracle connection overflow
|
dos exploit |
windows vulnerability |
2018-04-30 |
drupal < 7.58 - 'drupalgeddon3' (authenticated) remote code (metasploit)
|
webapps exploit |
php vulnerability |
2017-09-08 |
apache struts 2.0.1 < 2.3.33 / 2.5 < 2.5.10 - arbitrary code execution
|
remote exploit |
multiple vulnerability |
2017-09-20 |
android bluetooth - 'blueborne' information leak (2)
|
remote exploit |
android vulnerability |
2017-08-09 |
android bluetooth - 'blueborne' information leak (1)
|
remote exploit |
android vulnerability |
2018-04-22 |
oracle weblogic server 10.3.6.0 / 12.1.3.0 / 12.2.1.2 / 12.2.1.3 - deserialization remote command execution
|
remote exploit |
multiple vulnerability |
2016-07-20 |
websphere/jboss/opennms/symantec endpoint protection manager - java deserialization remote code execution
|
remote exploit |
multiple vulnerability |
2018-04-26 |
frog cms 0.9.5 - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2018-04-26 |
tp-link technologies tl-wa850re wi-fi range extender - remote reboot
|
webapps exploit |
hardware vulnerability |
2018-04-26 |
allok avi to dvd svcd vcd converter 4.0.1217 - buffer overflow (seh)
|
local exploit |
windows vulnerability |
2018-04-26 |
gitlist 0.6 - remote code execution
|
webapps exploit |
php vulnerability |
2018-04-26 |
mybb threads to link plugin 1.3 - cross-site scripting
|
webapps exploit |
php vulnerability |
2018-04-26 |
october cms user plugin 1.4.5 - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2018-04-26 |
sickrage < v2018.03.09 - clear-text credentials http response
|
webapps exploit |
linux vulnerability |
2018-04-26 |
wordpress plugin wp with spritz 1.0 - remote file inclusion
|
webapps exploit |
php vulnerability |
2018-04-26 |
jfrog artifactory < 4.16 - arbitrary file upload / remote command execution
|
webapps exploit |
linux vulnerability |
2018-04-25 |
drupal < 7.58 - 'drupalgeddon3' (authenticated) remote code execution (poc)
|
webapps exploit |
php vulnerability |
2018-04-25 |
chrome v8 jit - arrow function scope fixing bug
|
dos exploit |
multiple vulnerability |
2018-04-25 |
chrome v8 jit - 'awaitedpromise' update bug
|
dos exploit |
multiple vulnerability |
2018-04-25 |
hrsale the ultimate hrm 1.0.2 - local file inclusion
|
webapps exploit |
php vulnerability |
2018-04-25 |
hrsale the ultimate hrm 1.0.2 - (authenticated) cross-site scripting
|
webapps exploit |
php vulnerability |
2018-04-25 |
hrsale the ultimate hrm 1.0.2 - 'award_id' sql injection
|
webapps exploit |
php vulnerability |
2018-04-25 |
hrsale the ultimate hrm 1.0.2 - csv injection
|
webapps exploit |
php vulnerability |
2018-04-25 |
blog master pro 1.0 - csv injection
|
webapps exploit |
php vulnerability |
2018-04-25 |
shopy point of sale 1.0 - csv injection
|
webapps exploit |
php vulnerability |
2018-04-23 |
vmware workstation 12.5.2 - drag n drop use-after-free (pwn2own 2017) (poc)
|
dos exploit |
windows vulnerability |
2018-04-24 |
nintendo switch/nvidia: vulnerability disclosure: fusee gelee
|
papers exploit |
hardware vulnerability |
2018-04-24 |
wso2 carbon / wso2 dashboard server 5.3.0 - persistent cross-site scripting
|
webapps exploit |
java vulnerability |
2018-04-24 |
chrome v8 jit - 'nodeproperties::inferreceivermaps' type confusion
|
dos exploit |
multiple vulnerability |
2018-04-24 |
adobe flash - out-of-bounds write in blur filtering
|
dos exploit |
multiple vulnerability |
2018-04-24 |
adobe flash - info leak in image inflation
|
dos exploit |
multiple vulnerability |
2018-04-24 |
adobe flash - overflow in slab rendering
|
dos exploit |
multiple vulnerability |
2018-04-24 |
adobe flash - overflow when playing sound
|
dos exploit |
multiple vulnerability |
2018-04-24 |
microsoft internet explorer 11.371.16299.0 (windows 10) - denial of service
|
dos exploit |
windows vulnerability |
2018-04-24 |
asus infosvr - authentication bypass command execution (metasploit)
|
remote exploit |
hardware vulnerability |
2018-04-24 |
lastore-daemon d-bus - privilege escalation (metasploit)
|
local exploit |
linux vulnerability |
2018-04-24 |
easy file sharing web server 7.2 - 'userid' remote buffer overflow (dep bypass)
|
remote exploit |
windows vulnerability |
2018-04-24 |
kaspersky ksn for linux 5.2 - memory corruption
|
dos exploit |
linux vulnerability |
2018-04-24 |
wordpress plugin woo import export 1.0 - arbitrary file deletion
|
webapps exploit |
php vulnerability |
2018-04-24 |
gif2apng 1.9 - '.gif' stack buffer overflow
|
dos exploit |
linux vulnerability |
2018-04-24 |
allok video to dvd burner 2.6.1217 - buffer overflow (seh)
|
local exploit |
windows vulnerability |