2020-10-20 |
mobile shop system v1.0 - sql injection authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-20 |
ritecms 2.2.1 - remote code execution (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-20 |
user registration & login and user management system with admin panel 2.1 - persistent xss
|
webapps exploit |
php vulnerability |
2020-10-20 |
wordpress plugin hs brand logo slider 2.1 - 'logoupload' file upload
|
webapps exploit |
php vulnerability |
2020-10-20 |
ultimate project manager crm pro version 2.0.5 - sqli (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-20 |
visitor management system in php 1.0 - sql injection (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-20 |
wordpress plugin wp courses < 2.0.29 - broken access controls leading to courses content disclosure
|
webapps exploit |
php vulnerability |
2020-10-20 |
loan management system 1.0 - multiple cross site scripting (stored)
|
webapps exploit |
php vulnerability |
2020-10-20 |
comtrend ar-5387un router - persistent xss (authenticated)
|
webapps exploit |
hardware vulnerability |
2020-10-19 |
textpattern cms 4.6.2 - cross-site request forgery
|
webapps exploit |
php vulnerability |
2020-10-19 |
typesetter cms 5.1 - arbitrary code execution (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-19 |
hostel management system 2.1 - cross site scripting (multiple fields)
|
webapps exploit |
php vulnerability |
2020-10-19 |
jenkins 2.63 - sandbox bypass in pipeline: groovy plug-in
|
webapps exploit |
java vulnerability |
2020-10-19 |
hisilicon video encoders - unauthenticated rtsp buffer overflow (dos)
|
webapps exploit |
hardware vulnerability |
2020-10-19 |
hisilicon video encoders - full admin access via backdoor password
|
webapps exploit |
hardware vulnerability |
2020-10-19 |
hisilicon video encoders - rce via unauthenticated upload of malicious firmware
|
webapps exploit |
hardware vulnerability |
2020-10-19 |
hisilicon video encoders - rce via unauthenticated command injection
|
webapps exploit |
hardware vulnerability |
2020-10-19 |
hisilicon video encoders - unauthenticated file disclosure via path traversal
|
webapps exploit |
hardware vulnerability |
2020-10-19 |
online job portal 1.0 - cross site scripting (stored)
|
webapps exploit |
php vulnerability |
2020-10-19 |
online discussion forum site 1.0 - xss in messaging system
|
webapps exploit |
php vulnerability |
2020-10-19 |
online student's management system 1.0 - remote code execution (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-19 |
nagios xi 5.7.3 - 'snmp trap interface' authenticated sql injection
|
webapps exploit |
php vulnerability |
2020-10-19 |
nagios xi 5.7.3 - 'manage users' authenticated sql injection
|
webapps exploit |
php vulnerability |
2020-10-19 |
nagios xi 5.7.3 - 'contact templates' persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-10-19 |
tourism management system 1.0 - arbitrary file upload
|
webapps exploit |
php vulnerability |
2020-10-16 |
cs-cart 1.3.3 - authenticated rce
|
webapps exploit |
php vulnerability |
2020-10-16 |
cs-cart 1.3.3 - 'classes_dir' lfi
|
webapps exploit |
php vulnerability |
2020-10-16 |
seat reservation system 1.0 - unauthenticated sql injection
|
webapps exploit |
php vulnerability |
2020-10-16 |
hotel management system 1.0 - remote code execution (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-16 |
seat reservation system 1.0 - remote code execution (unauthenticated)
|
webapps exploit |
php vulnerability |
2020-10-16 |
aapanel 6.6.6 - privilege escalation & remote code execution (authenticated)
|
webapps exploit |
python vulnerability |
2020-10-16 |
restaurant reservation system 1.0 - 'date' sql injection (authenticated)
|
webapps exploit |
php vulnerability |
2020-10-16 |
company visitor management system (cvms) 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-16 |
alumni management system 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-16 |
employee management system 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-16 |
employee management system 1.0 - cross site scripting (stored)
|
webapps exploit |
php vulnerability |
2020-10-15 |
zoo management system 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-15 |
simple grocery store sales and inventory system 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-15 |
rconfig 3.9.5 - remote code execution (unauthenticated)
|
webapps exploit |
php vulnerability |
2020-10-15 |
vehicle parking management system 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2020-10-14 |
guild wars 2 - insecure folder permissions
|
local exploit |
windows vulnerability |
2020-10-14 |
nodebb forum 1.12.2-1.14.2 - account takeover
|
webapps exploit |
multiple vulnerability |
2020-07-23 |
timeclock software 1.01 0 - (authenticated) time-based sql injection
|
webapps exploit |
php vulnerability |
2020-10-13 |
battle.net 1.27.1.12428 - insecure file permissions
|
local exploit |
windows vulnerability |
2020-10-13 |
berlicrm 1.0.24 - 'src_record' sql injection
|
webapps exploit |
php vulnerability |
2020-10-12 |
cisco asa and ftd 9.6.4.42 - path traversal
|
webapps exploit |
hardware vulnerability |
2020-10-12 |
online students management system 1.0 - 'username' sql injections
|
webapps exploit |
php vulnerability |
2020-10-12 |
liman 0.7 - cross-site request forgery (change password)
|
webapps exploit |
multiple vulnerability |
2020-10-12 |
meddream pacs server 6.8.3.751 - remote code execution (unauthenticated)
|
webapps exploit |
php vulnerability |
2020-10-12 |
small crm 2.0 - 'email' sql injection
|
webapps exploit |
php vulnerability |