2020-12-02 |
car rental management system 1.0 - sql injection / local file include
|
webapps exploit |
php vulnerability |
2020-12-02 |
mitel mitel-cs018 - call data information disclosure
|
remote exploit |
linux vulnerability |
2020-12-02 |
simple college website 1.0 - 'page' local file inclusion
|
webapps exploit |
php vulnerability |
2020-12-02 |
anuko time tracker 1.19.23.5311 - password reset leading to account takeover
|
webapps exploit |
php vulnerability |
2020-12-02 |
anuko time tracker 1.19.23.5311 - no rate limit on password reset functionality
|
webapps exploit |
php vulnerability |
2020-12-02 |
churchcrm 4.2.1 - persistent cross site scripting (xss)
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
churchcrm 4.2.0 - csv/formula injection
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
webdamn user registration & login system with user panel - sqli auth bypass
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
ksix zigbee devices - playback protection bypass (poc)
|
remote exploit |
multiple vulnerability |
2020-12-02 |
dotcms 20.11 - stored cross-site scripting
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
artworks gallery 1.0 - arbitrary file upload rce (authenticated) via edit profile
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
artworks gallery 1.0 - arbitrary file upload rce (authenticated) via add artwork
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
wondercms 3.1.3 - 'menu' persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-12-02 |
local service search engine management system 1.0 - sqli authentication bypass
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
online news portal system 1.0 - 'title' stored cross site scripting
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
bakeshop online ordering system 1.0 - 'owner' persistent cross-site scripting
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
newslister - authenticated persistent cross-site scripting
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
online voting system project in php - 'username' persistent cross-site scripting
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
idt pc audio 1.0.6433.0 - 'stacsv' unquoted service path
|
local exploit |
windows vulnerability |
2020-12-02 |
prtg network monitor 20.4.63.1412 - 'maps' stored xss
|
webapps exploit |
windows vulnerability |
2020-12-02 |
wondercms 3.1.3 - authenticated remote code execution
|
webapps exploit |
php vulnerability |
2020-12-02 |
wondercms 3.1.3 - authenticated ssrf to remote remote code execution
|
webapps exploit |
php vulnerability |
2020-12-02 |
egavilanmedia user registration & login system with admin panel 1.0 - stored cross site scripting
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
student result management system 1.0 - authentication bypass sql injection
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
egavilanmedia user registration & login system with admin panel 1.0 - csrf
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
under construction page with cpanel 1.0 - sql injection
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
pharmacy store management system 1.0 - 'id' sql injection
|
webapps exploit |
php vulnerability |
2020-12-02 |
ilias learning management system 4.3 - ssrf
|
webapps exploit |
multiple vulnerability |
2020-12-02 |
asc timetables 2021.6.2 - denial of service (poc)
|
local exploit |
windows vulnerability |
2020-12-02 |
expense management system - 'description' stored cross site scripting
|
webapps exploit |
multiple vulnerability |
2020-12-01 |
tendenci 12.3.1 - csv/ formula injection
|
webapps exploit |
multiple vulnerability |
2020-12-01 |
intel(r) management and security application 5.2 - user notification service unquoted service path
|
local exploit |
windows vulnerability |
2020-12-01 |
pearson vue vts 2.3.1911 installer - vueapplicationwrapper unquoted service path
|
local exploit |
windows vulnerability |
2020-12-01 |
global registration service 1.0.0.3 - 'gregsvc.exe' unquoted service path
|
local exploit |
windows vulnerability |
2020-12-01 |
epson status monitor 3 'epson_pm_rpcv4_06' - unquoted service path
|
local exploit |
windows vulnerability |
2020-12-01 |
social networking site - authentication bypass (sqli)
|
webapps exploit |
php vulnerability |
2020-12-01 |
pandora fms 7.0 ng 749 - multiple persistent cross-site scripting vulnerabilities # date: 11-14-2020
|
webapps exploit |
php vulnerability |
2020-12-01 |
medical center portal management system 1.0 - 'login' sql injection
|
webapps exploit |
php vulnerability |
2020-12-01 |
lepton cms 4.7.0 - 'url' persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-12-01 |
tailor management system 1.0 - unrestricted file upload to remote code execution
|
webapps exploit |
php vulnerability |
2020-12-01 |
multi restaurant table reservation system 1.0 - multiple persistent xss
|
webapps exploit |
php vulnerability |
2020-12-01 |
10-strike network inventory explorer 8.65 - buffer overflow (seh)
|
local exploit |
windows vulnerability |
2020-12-01 |
setelsa conacwin 3.7.1.2 - local file inclusion
|
webapps exploit |
multiple vulnerability |
2020-12-01 |
pharmacy/medical store & sale point 1.0- 'email' sql injection
|
webapps exploit |
php vulnerability |
2020-12-01 |
online shopping alphaware 1.0 - error based sql injection
|
webapps exploit |
php vulnerability |
2020-12-01 |
wordpress plugin eventon calendar 3.0.5 - reflected cross-site scripting
|
webapps exploit |
php vulnerability |
2020-12-01 |
joomla! component gmapfp 3.5 - unauthenticated arbitrary file upload
|
webapps exploit |
php vulnerability |
2020-12-01 |
typesetter 5.1 - csrf (change admin e-mail)
|
webapps exploit |
php vulnerability |
2020-11-30 |
yatinywinftp - denial of service (poc)
|
remote exploit |
windows vulnerability |
2020-11-30 |
intelbras router rf 301k 1.1.2 - authentication bypass
|
webapps exploit |
hardware vulnerability |