2021-09-13 |
active webcam 11.5 - unquoted service path
|
local exploit |
windows vulnerability |
2021-09-09 |
bus pass management system 1.0 - 'adminname' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-09-08 |
backdooring wordpress to get text-clear passwords - paper (brazilian-portuguese)
|
papers exploit |
multiple vulnerability |
2021-09-08 |
wordpress plugin tablepress 1.14 - csv injection
|
webapps exploit |
php vulnerability |
2021-09-07 |
wordpress plugin survey & poll 1.5.7.3 - 'sss_params' sql injection (2)
|
webapps exploit |
php vulnerability |
2021-09-07 |
wordpress plugin wp sitemap page 1.6.4 - stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-09-06 |
antminer monitor 0.5.0 - authentication bypass
|
webapps exploit |
multiple vulnerability |
2021-09-06 |
smartftp client 10.0.2909.0 - 'multiple' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-09-06 |
patient appointment scheduler system 1.0 - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2021-09-06 |
patient appointment scheduler system 1.0 - unauthenticated file upload
|
webapps exploit |
php vulnerability |
2021-09-06 |
bus pass management system 1.0 - 'viewid' insecure direct object references (idor)
|
webapps exploit |
php vulnerability |
2021-09-06 |
flatcore cms 2.0.7 - remote code execution (rce) (authenticated)
|
webapps exploit |
php vulnerability |
2021-09-06 |
argus surveillance dvr 4.0 - unquoted service path
|
local exploit |
windows vulnerability |
2021-09-06 |
openemr 6.0.0 - 'noteid' insecure direct object reference (idor)
|
webapps exploit |
php vulnerability |
2021-09-03 |
opensis 8.0 'modname' - directory traversal
|
webapps exploit |
php vulnerability |
2021-09-03 |
remote mouse 4.002 - unquoted service path
|
local exploit |
windows vulnerability |
2021-09-02 |
cracking wifi wpa2 handshake - paper (turkish)
|
papers exploit |
multiple vulnerability |
2021-09-02 |
wordpress plugin duplicate page 4.4.1 - stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-09-02 |
wpanel 4.3.1 - remote code execution (rce) (authenticated)
|
webapps exploit |
multiple vulnerability |
2021-09-02 |
compro technology ip camera - ' mjpegstreamer.cgi' screenshot disclosure
|
webapps exploit |
hardware vulnerability |
2021-09-02 |
compro technology ip camera - ' index_mjpeg.cgi' stream disclosure
|
webapps exploit |
hardware vulnerability |
2021-09-02 |
compro technology ip camera - 'multiple' credential disclosure
|
webapps exploit |
hardware vulnerability |
2021-09-02 |
compro technology ip camera - rtsp stream disclosure (unauthenticated)
|
webapps exploit |
hardware vulnerability |
2021-09-02 |
compro technology ip camera - 'killps.cgi' denial of service (dos)
|
webapps exploit |
hardware vulnerability |
2021-09-02 |
opensis community 8.0 - 'cp_id_miss_attn' sql injection
|
webapps exploit |
php vulnerability |
2021-09-02 |
dolibarr erp 14.0.1 - privilege escalation
|
webapps exploit |
php vulnerability |
2021-09-01 |
telegram desktop 2.9.2 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-09-01 |
wordpress plugin payments plugin | getpaid 2.4.6 - html injection
|
webapps exploit |
php vulnerability |
2021-09-01 |
hivenightmare aka serioussam - paper
|
papers exploit |
windows vulnerability |
2021-09-01 |
traffic offense management system 1.0 - remote code execution (rce) (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-09-01 |
confluence server 7.12.4 - 'ognl injection' remote code execution (rce) (unauthenticated)
|
webapps exploit |
java vulnerability |
2021-08-31 |
wordpress plugin profilepress 3.1.3 - privilege escalation (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-08-31 |
umbraco cms 8.9.1 - directory traversal
|
webapps exploit |
aspx vulnerability |
2021-08-30 |
projectsend r1295 - 'name' stored xss
|
webapps exploit |
php vulnerability |
2021-08-30 |
strapi cms 3.0.0-beta.17.4 - remote code execution (rce) (unauthenticated)
|
webapps exploit |
multiple vulnerability |
2021-08-30 |
strapi 3.0.0-beta.17.7 - remote code execution (rce) (authenticated)
|
webapps exploit |
multiple vulnerability |
2021-08-30 |
strapi 3.0.0-beta - set password (unauthenticated)
|
webapps exploit |
multiple vulnerability |
2021-08-30 |
mysql user-defined (linux) x32 / x86_64 - 'sys_exec' local privilege escalation (2)
|
local exploit |
linux vulnerability |
2021-08-30 |
bus pass management system 1.0 - 'viewid' sql injection
|
webapps exploit |
php vulnerability |
2021-08-30 |
usermin 1.820 - remote code execution (rce) (authenticated)
|
webapps exploit |
linux vulnerability |
2021-08-30 |
zeslecp 3.1.9 - remote code execution (rce) (authenticated)
|
webapps exploit |
multiple vulnerability |
2021-08-27 |
commax ums client activex control 1.7.0.2 - 'cnc_ctrl.dll' heap buffer overflow
|
webapps exploit |
hardware vulnerability |
2021-08-27 |
commax webviewer activex control 2.1.4.5 - 'commax_webviewer.ocx' buffer overflow
|
webapps exploit |
hardware vulnerability |
2021-08-27 |
cyberpanel 2.1 - remote code execution (rce) (authenticated)
|
webapps exploit |
multiple vulnerability |
2021-08-26 |
processmaker 3.5.4 - local file inclusion
|
webapps exploit |
multiple vulnerability |
2021-08-25 |
online leave management system 1.0 - arbitrary file upload to shell (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-08-25 |
hp officejet 4630/7110 mym1fn2025ar/2117a - stored cross-site scripting (xss)
|
webapps exploit |
hardware vulnerability |
2021-08-25 |
wordpress plugin mail masta 1.0 - local file inclusion (2)
|
webapps exploit |
php vulnerability |
2021-08-23 |
raspap 2.6.6 - remote code execution (rce) (authenticated)
|
webapps exploit |
php vulnerability |
2021-08-23 |
simple phone book1.0 - 'username' sql injection (unauthenticated)
|
webapps exploit |
php vulnerability |