2021-02-26 |
simple employee records system 1.0 - file upload rce (unauthenticated)
|
webapps exploit |
php vulnerability |
2021-02-25 |
vehicle parking management system 1.0 - 'catename' persistent cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-02-25 |
asus remote link 1.1.2.13 - remote code execution
|
remote exploit |
windows vulnerability |
2021-02-24 |
layerbb 1.1.4 - 'search_query' sql injection
|
webapps exploit |
php vulnerability |
2021-02-24 |
windows/x86 - add user alfred to administrators/remote desktop users group shellcode (240 bytes)
|
shellcode exploit |
windows_x86 vulnerability |
2021-02-24 |
active directory penetration testing - paper (turkish)
|
papers exploit |
windows vulnerability |
2021-02-24 |
product key explorer 4.2.7 - 'multiple' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-02-24 |
spotauditor 5.3.5 - 'multiple' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-02-24 |
softros lan messenger 9.6.4 - 'softrosspellchecker' unquoted service path
|
local exploit |
windows vulnerability |
2021-02-24 |
unified remote 3.9.0.2463 - remote code execution
|
remote exploit |
windows vulnerability |
2021-02-24 |
logonexpert 8.1 - 'logonexpertsvc' unquoted service path
|
local exploit |
windows vulnerability |
2021-02-24 |
python jsonpickle 2.0.0 - remote code execution
|
remote exploit |
multiple vulnerability |
2021-02-23 |
hfs (http file server) 2.3.x - remote command execution (3)
|
remote exploit |
windows vulnerability |
2021-02-23 |
batflat cms 1.3.6 - 'multiple' stored xss
|
webapps exploit |
php vulnerability |
2021-02-23 |
monica 2.19.1 - 'last_name' stored xss
|
webapps exploit |
multiple vulnerability |
2021-02-19 |
beauty parlour management system 1.0 - 'sername' sql injection
|
webapps exploit |
php vulnerability |
2021-02-19 |
opentext content server 20.3 - 'multiple' stored cross-site scripting
|
webapps exploit |
multiple vulnerability |
2021-02-19 |
datasims avionics arinc 664-1 - local buffer overflow (poc)
|
local exploit |
windows vulnerability |
2021-02-19 |
online exam system with timer 1.0- 'email' sql injection auth bypass
|
webapps exploit |
php vulnerability |
2021-02-19 |
comment system 1.0 - 'multiple' stored cross-site scripting
|
webapps exploit |
php vulnerability |
2021-02-19 |
peel shopping 9.3.0 - 'comments/special instructions' stored cross-site scripting
|
webapps exploit |
php vulnerability |
2021-02-18 |
batflat cms 1.3.6 - remote code execution (authenticated)
|
webapps exploit |
php vulnerability |
2021-02-18 |
apport 2.20 - local privilege escalation
|
local exploit |
linux vulnerability |
2021-02-18 |
gitea 1.12.5 - remote code execution (authenticated)
|
webapps exploit |
multiple vulnerability |
2021-02-17 |
billing management system 2.0 - 'email' sql injection auth bypass
|
webapps exploit |
php vulnerability |
2021-02-17 |
faulty evaluation system 1.0 - 'multiple' stored cross-site scripting
|
webapps exploit |
php vulnerability |
2021-02-16 |
nsauditor 3.2.2.0 - 'event description' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-02-16 |
agatasoft pingmaster pro 2.1 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-02-16 |
managed switch port mapping tool 2.85.2 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-02-16 |
blackcat cms 1.3.6 - 'display name' cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-02-16 |
online internship management system 1.0 - 'email' sql injection auth bypass
|
webapps exploit |
php vulnerability |
2021-02-15 |
tasks 9.7.3 - insecure permissions
|
local exploit |
android vulnerability |
2021-02-15 |
teachers record management system 1.0 - 'searchteacher' sql injection
|
webapps exploit |
php vulnerability |
2021-02-15 |
testlink 1.9.20 - unrestricted file upload (authenticated)
|
webapps exploit |
php vulnerability |
2021-02-12 |
school event attendance monitoring system 1.0 - 'item name' stored cross-site scripting
|
webapps exploit |
php vulnerability |
2021-02-12 |
school file management system 1.0 - 'multiple' stored cross-site scripting
|
webapps exploit |
php vulnerability |
2021-02-12 |
pdfcomplete corporate edition 4.1.45 - 'pdfcdispatcher' unquoted service path
|
local exploit |
windows vulnerability |
2021-02-11 |
online marriage registration system (omrs) 1.0 - remote code execution (3)
|
webapps exploit |
php vulnerability |
2021-02-11 |
openlitespeed webserver 1.7.8 - command injection (authenticated) (2)
|
webapps exploit |
multiple vulnerability |
2021-02-11 |
b2evolution 6.11.6 - 'tab3' reflected xss
|
webapps exploit |
php vulnerability |
2021-02-11 |
b2evolution 6.11.6 - 'redirect_to' open redirect
|
webapps exploit |
php vulnerability |
2021-02-11 |
peel shopping 9.3.0 - 'address' stored cross-site scripting
|
webapps exploit |
php vulnerability |
2021-02-10 |
node.js - 'node-serialize' remote code execution (2)
|
webapps exploit |
nodejs vulnerability |
2021-02-10 |
b2evolution 6.11.6 - 'plugin name' stored xss
|
webapps exploit |
php vulnerability |
2021-02-09 |
adobe connect 10 - username disclosure
|
webapps exploit |
multiple vulnerability |
2021-02-09 |
anytxt searcher 1.2.394 - 'atservice' unquoted service path
|
local exploit |
windows vulnerability |
2021-02-09 |
epson usb display 1.6.0.0 - 'emp_udsa' unquoted service path
|
local exploit |
windows vulnerability |
2021-02-09 |
linux/x64 - execve "cat /etc/shadow" shellcode (66 bytes)
|
shellcode exploit |
linux_x86-64 vulnerability |
2021-02-09 |
online car rental system 1.0 - stored cross site scripting
|
webapps exploit |
php vulnerability |
2021-02-08 |
wordpress plugin supsystic backup 2.3.9 - local file inclusion
|
webapps exploit |
php vulnerability |