2020-10-28 |
program access controller v1.2.0.0 - 'pacservice.exe' unquoted service path
|
local exploit |
windows vulnerability |
2020-10-28 |
exploit - epson 1.124 - 'seksmdb.exe' unquoted service path
|
local exploit |
windows vulnerability |
2020-10-28 |
oracle business intelligence enterprise edition 5.5.0.0.0 / 12.2.1.3.0 / 12.2.1.4.0 - 'getpreviewimage' directory traversal/local file inclusion
|
webapps exploit |
linux vulnerability |
2020-10-28 |
blueman < 2.1.4 - local privilege escalation
|
local exploit |
linux vulnerability |
2020-10-28 |
aptdaemon < 1.1.1 - file existence disclosure
|
local exploit |
linux vulnerability |
2020-10-28 |
packagekit < 1.1.13 - file existence disclosure
|
local exploit |
linux vulnerability |
2020-10-28 |
cse bookstore 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-28 |
nagios xi 5.7.3 - 'mibs.php' remote command injection (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-27 |
goahead web server 5.1.1 - digest authentication capture replay nonce reuse
|
remote exploit |
hardware vulnerability |
2020-10-27 |
sphider search engine 1.3.6 - 'word_upper_bound' rce (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-27 |
client management system 1.0 - 'searchdata' sql injection
|
webapps exploit |
php vulnerability |
2020-10-27 |
sentrifugo 3.2 - file upload restriction bypass (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-27 |
adtec digital multiple products - default hardcoded credentials remote root
|
remote exploit |
hardware vulnerability |
2020-10-27 |
tdm digital signage pc player 4.1 - insecure file permissions
|
local exploit |
windows vulnerability |
2020-10-26 |
request serious play f3 media server 7.0.3 - remote code execution (unauthenticated)
|
webapps exploit |
hardware vulnerability |
2020-10-26 |
request serious play f3 media server 7.0.3 - remote denial of service
|
webapps exploit |
hardware vulnerability |
2020-10-26 |
request serious play f3 media server 7.0.3 - debug log disclosure
|
webapps exploit |
hardware vulnerability |
2020-10-26 |
request serious play media player 3.0 - directory traversal file disclosure
|
webapps exploit |
hardware vulnerability |
2020-10-26 |
genexis platinum-4410 - 'ssid' persistent xss
|
webapps exploit |
hardware vulnerability |
2020-10-26 |
pdw file browser 1.3 - 'new_filename' cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2020-10-26 |
inoerp 0.7.2 - remote code execution (unauthenticated)
|
webapps exploit |
php vulnerability |
2020-10-26 |
online health care system 1.0 - multiple cross site scripting (stored)
|
webapps exploit |
php vulnerability |
2020-10-26 |
cms made simple 2.1.6 - 'cntnt01detailtemplate' server-side template injection
|
webapps exploit |
php vulnerability |
2020-10-23 |
textpattern cms 4.8.3 - remote code execution (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-23 |
bludit 3.9.2 - auth bruteforce bypass
|
webapps exploit |
php vulnerability |
2020-10-23 |
gym management system 1.0 - stored cross site scripting
|
webapps exploit |
php vulnerability |
2020-10-23 |
gym management system 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-23 |
school faculty scheduling system 1.0 - 'username' sql injection
|
webapps exploit |
php vulnerability |
2020-10-23 |
school faculty scheduling system 1.0 - 'id' sql injection
|
webapps exploit |
php vulnerability |
2020-10-23 |
point of sales 1.0 - 'username' sql injection
|
webapps exploit |
php vulnerability |
2020-10-23 |
gym management system 1.0 - 'id' sql injection
|
webapps exploit |
php vulnerability |
2020-10-23 |
lot reservation management system 1.0 - cross-site scripting (stored)
|
webapps exploit |
php vulnerability |
2020-10-23 |
lot reservation management system 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-23 |
point of sales 1.0 - 'id' sql injection
|
webapps exploit |
php vulnerability |
2020-10-23 |
user registration & login and user management system 2.1 - sql injection
|
webapps exploit |
php vulnerability |
2020-10-23 |
car rental management system 1.0 - arbitrary file upload
|
webapps exploit |
php vulnerability |
2020-10-23 |
stock management system 1.0 - 'brandid and categoriesid' sql injection
|
webapps exploit |
php vulnerability |
2020-10-23 |
ajenti 2.1.36 - remote code execution (authenticated)
|
webapps exploit |
python vulnerability |
2020-10-23 |
online library management system 1.0 - arbitrary file upload
|
webapps exploit |
php vulnerability |
2020-10-21 |
tiki wiki cms groupware 21.1 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-21 |
stock management system 1.0 - 'brand name' persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-10-21 |
stock management system 1.0 - 'categories name' persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-10-21 |
stock management system 1.0 - 'product name' persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-10-21 |
goautodial 4.0 - authenticated shell upload
|
webapps exploit |
php vulnerability |
2020-10-21 |
school faculty scheduling system 1.0 - authentication bypass poc
|
webapps exploit |
php vulnerability |
2020-10-21 |
school faculty scheduling system 1.0 - stored cross site scripting poc
|
webapps exploit |
php vulnerability |
2020-10-21 |
hrsale 2.0.0 - local file inclusion
|
webapps exploit |
php vulnerability |
2020-10-20 |
wordpress plugin colorbox lightbox v1.1.1 - persistent cross-site scripting (authenticated)
|
webapps exploit |
multiple vulnerability |
2020-10-20 |
wordpress plugin rest google maps < 7.11.18 - sql injection
|
webapps exploit |
php vulnerability |
2020-10-20 |
apache struts 2 - defaultactionmapper prefixes ognl code execution
|
webapps exploit |
java vulnerability |