2022-01-25 |
online project time management system 1.0 - multiple stored cross site scripting (xss) (authenticated)
|
webapps exploit |
php vulnerability |
2022-01-25 |
online project time management system 1.0 - sqli (authenticated)
|
webapps exploit |
php vulnerability |
2022-01-24 |
landa driving school management system 2.0.1 - arbitrary file upload
|
webapps exploit |
php vulnerability |
2022-01-19 |
abusing laps - paper
|
papers exploit |
windows vulnerability |
2022-01-19 |
lightspeed cache vulnerability - paper
|
papers exploit |
multiple vulnerability |
2022-01-19 |
affiliate pro 1.7 - 'multiple' cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2022-01-19 |
rocket lms 1.1 - persistent cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2022-01-19 |
udoctorappointment v2.1.1 - 'multiple' cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2022-01-18 |
creston web interface 1.0.0.2159 - credential disclosure
|
webapps exploit |
hardware vulnerability |
2022-01-18 |
nyron 1.0 - sqli (unauthenticated)
|
webapps exploit |
aspx vulnerability |
2022-01-18 |
simple chatbot application 1.0 - 'message' blind sqli
|
webapps exploit |
php vulnerability |
2022-01-18 |
simple chatbot application 1.0 - remote code execution (rce)
|
webapps exploit |
php vulnerability |
2022-01-18 |
openbmcs 2.4 - information disclosure
|
webapps exploit |
php vulnerability |
2022-01-18 |
openbmcs 2.4 - server side request forgery (ssrf) (unauthenticated)
|
webapps exploit |
php vulnerability |
2022-01-18 |
openbmcs 2.4 - create admin / remote privilege escalation
|
webapps exploit |
php vulnerability |
2022-01-18 |
openbmcs 2.4 - sqli (authenticated)
|
webapps exploit |
php vulnerability |
2022-01-18 |
openbmcs 2.4 - cross site request forgery (csrf)
|
webapps exploit |
php vulnerability |
2022-01-18 |
online resort management system 1.0 - sqli (authenticated)
|
webapps exploit |
php vulnerability |
2022-01-18 |
archeevo 5.0 - local file inclusion
|
remote exploit |
windows vulnerability |
2022-01-18 |
worktime 10.20 build 4967 - unquoted service path
|
local exploit |
windows vulnerability |
2022-01-13 |
wordpress core 5.8.2 - 'wp_query' sql injection
|
webapps exploit |
php vulnerability |
2022-01-13 |
online diagnostic lab management system 1.0 - sql injection (unauthenticated)
|
webapps exploit |
php vulnerability |
2022-01-13 |
online diagnostic lab management system 1.0 - stored cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2022-01-13 |
online diagnostic lab management system 1.0 - account takeover (unauthenticated)
|
webapps exploit |
php vulnerability |
2022-01-13 |
salonerp 3.0.1 - 'sql' sql injection (authenticated)
|
webapps exploit |
php vulnerability |
2022-01-13 |
hospitals patient records management system 1.0 - 'doctors' stored cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2022-01-13 |
hospitals patient records management system 1.0 - 'room_list' stored cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2022-01-13 |
hospitals patient records management system 1.0 - 'room_types' stored cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2022-01-12 |
wordpress plugin frontend uploader 1.3.2 - stored cross site scripting (xss) (unauthenticated)
|
webapps exploit |
php vulnerability |
2022-01-12 |
microsoft windows defender - detections bypass
|
local exploit |
windows vulnerability |
2022-01-12 |
microsoft windows .reg file - dialog spoof / mitigation bypass
|
local exploit |
windows vulnerability |
2022-01-10 |
coreftp server build 725 - directory traversal (authenticated)
|
remote exploit |
windows vulnerability |
2022-01-10 |
open-audit community 4.2.0 - cross-site scripting (xss) (authenticated)
|
webapps exploit |
php vulnerability |
2022-01-10 |
vuplayer 2.49 - '.wax' local buffer overflow (dep bypass)
|
local exploit |
windows vulnerability |
2022-01-10 |
online railway reservation system 1.0 - 'multiple' stored cross site scripting (xss) (unauthenticated)
|
webapps exploit |
php vulnerability |
2022-01-10 |
online railway reservation system 1.0 - admin account creation (unauthenticated)
|
webapps exploit |
php vulnerability |
2022-01-10 |
online railway reservation system 1.0 - remote code execution (rce) (unauthenticated)
|
webapps exploit |
php vulnerability |
2022-01-10 |
online railway reservation system 1.0 - 'id' sql injection (unauthenticated)
|
webapps exploit |
php vulnerability |
2022-01-10 |
http commander 3.1.9 - stored cross site scripting (xss)
|
webapps exploit |
windows vulnerability |
2022-01-07 |
online veterinary appointment system 1.0 - 'multiple' sql injection
|
webapps exploit |
php vulnerability |
2022-01-05 |
wordpress plugin aawp 3.16 - 'tab' reflected cross site scripting (xss) (authenticated)
|
webapps exploit |
php vulnerability |
2022-01-05 |
automox agent 32 - local privilege escalation
|
local exploit |
windows vulnerability |
2022-01-05 |
projeqtor v9.3.1 - stored cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2022-01-05 |
gerapy 0.9.7 - remote code execution (rce) (authenticated)
|
remote exploit |
python vulnerability |
2022-01-05 |
dixell xweb 500 - arbitrary file write
|
remote exploit |
hardware vulnerability |
2022-01-05 |
termtalk server 3.24.0.2 - arbitrary file read (unauthenticated)
|
remote exploit |
windows vulnerability |
2022-01-05 |
opensis student information system 8.0 - 'multiple' sql injection
|
webapps exploit |
php vulnerability |
2022-01-05 |
vodafone h-500-s 3.5.10 - wifi password disclosure
|
webapps exploit |
hardware vulnerability |
2022-01-05 |
terramaster tos 4.2.15 - remote code execution (rce) (unauthenticated)
|
webapps exploit |
php vulnerability |
2022-01-05 |
virtual airlines manager 2.6.2 - 'multiple' sql injection
|
webapps exploit |
php vulnerability |