2021-03-15 |
ebeam education suite 2.5.0.9 - 'ebeam device service' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-15 |
realtek wireless lan utility 700.1631 - 'realtek11nsu' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-15 |
qnap qvr client 5.0.0.13230 - 'qvrservice' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-15 |
rconfig 3.9.6 - 'path' local file inclusion (authenticated)
|
webapps exploit |
php vulnerability |
2021-03-15 |
magpierss 0.72 - 'url' command injection and server side request forgery
|
webapps exploit |
php vulnerability |
2021-03-15 |
zenario cms 8.8.53370 - 'id' blind sql injection
|
webapps exploit |
php vulnerability |
2021-03-12 |
vembu bdr 4.2.0.1 u1 - multiple unquoted service paths
|
local exploit |
windows vulnerability |
2021-03-12 |
monitoring system (dashboard) 1.0 - file upload rce (authenticated)
|
webapps exploit |
php vulnerability |
2021-03-12 |
monitoring system (dashboard) 1.0 - 'uname' sql injection
|
webapps exploit |
php vulnerability |
2021-03-11 |
nsasoft hardware software inventory 1.6.4.0 - 'multiple' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-03-11 |
microsoft exchange 2019 - ssrf to arbitrary file write (proxylogon) (poc)
|
webapps exploit |
windows vulnerability |
2021-03-11 |
mybb ougc feedback plugin 1.8.22 - cross-site scripting
|
webapps exploit |
php vulnerability |
2021-03-11 |
nucom 11n wireless router 5.07.90 - remote privilege escalation
|
webapps exploit |
hardware vulnerability |
2021-03-10 |
atlassian jira 8.11.1 - user enumeration
|
webapps exploit |
multiple vulnerability |
2021-03-09 |
bvpn 2.5.1 - 'waselvpnserv' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-09 |
sandboxie plus v0.7.2 - 'sbiesvc' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-09 |
freelan 2.2 - 'freelan service' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-09 |
golden ftp server 4.70 - 'pass' buffer overflow (2)
|
remote exploit |
windows vulnerability |
2021-03-08 |
glpi 9.5.3 - 'fromtype' unsafe reflection
|
webapps exploit |
php vulnerability |
2021-03-08 |
joomla jck editor 6.4.4 - 'parent' sql injection (2)
|
webapps exploit |
php vulnerability |
2021-03-08 |
pingzapper 2.3.1 - 'pingzappersvc' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-08 |
hotel and lodge management system 1.0 - remote code execution (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-03-08 |
configuration tool 1.6.53 - 'oplclsrv' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-08 |
print job accounting 4.4.10 - 'okijasvc' unquoted service path
|
local exploit |
windows vulnerability |
2021-03-05 |
fluig 1.7.0 - path traversal
|
webapps exploit |
multiple vulnerability |
2021-03-05 |
catdv 9.2 - rmi authentication bypass
|
remote exploit |
java vulnerability |
2021-03-04 |
textpattern 4.8.3 - remote code execution (authenticated) (2)
|
webapps exploit |
php vulnerability |
2021-03-04 |
web based quiz system 1.0 - 'eid' union based sql injection (authenticated)
|
webapps exploit |
php vulnerability |
2021-03-04 |
online ordering system 1.0 - blind sql injection (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-03-04 |
textpattern cms 4.9.0-dev - 'excerpt' persistent cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-03-04 |
textpattern cms 4.8.4 - 'comments' persistent cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-03-04 |
online ordering system 1.0 - arbitrary file upload to remote code execution
|
webapps exploit |
php vulnerability |
2021-03-04 |
e107 cms 2.3.0 - csrf
|
webapps exploit |
php vulnerability |
2021-03-03 |
anydesk 5.5.2 - remote code execution
|
remote exploit |
linux vulnerability |
2021-03-03 |
smbghost (smbv3 vulnerability) - paper
|
papers exploit |
windows vulnerability |
2021-03-03 |
chrome browser filereader (uaf) - paper
|
papers exploit |
windows vulnerability |
2021-03-03 |
local services search engine management system (lssmes) 1.0 - blind & error based sql injection (authenticated)
|
webapps exploit |
php vulnerability |
2021-03-03 |
local services search engine management system (lssmes) 1.0 - 'name' persistent cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-03-02 |
zen cart 1.5.7b - remote code execution (authenticated)
|
webapps exploit |
php vulnerability |
2021-03-02 |
web based quiz system 1.0 - 'name' persistent/stored cross-site scripting
|
webapps exploit |
php vulnerability |
2021-03-02 |
tiny tiny rss - remote code execution
|
webapps exploit |
php vulnerability |
2021-03-02 |
web based quiz system 1.0 - 'mcq options' persistent/stored cross-site scripting
|
webapps exploit |
php vulnerability |
2021-03-01 |
covid-19 contact tracing system 1.0 - remote code execution (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-03-01 |
online catering reservation system 1.0 - remote code execution (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-03-01 |
vmware vcenter server 7.0 - unauthenticated file upload
|
webapps exploit |
multiple vulnerability |
2021-03-01 |
wifi mouse 1.7.8.5 - remote code execution
|
remote exploit |
windows vulnerability |
2021-03-01 |
fortilogger 4.4.2.2 - unauthenticated arbitrary file upload (metasploit)
|
webapps exploit |
multiple vulnerability |
2021-02-26 |
remote desktop web access - authentication timing attack (metasploit module)
|
remote exploit |
windows vulnerability |
2021-02-26 |
lightcms 1.3.4 - 'exclusive' stored xss
|
webapps exploit |
multiple vulnerability |
2021-02-26 |
triconsole 3.75 - reflected xss
|
webapps exploit |
php vulnerability |