2020-03-24 |
wordpress plugin wpforms 1.5.8.2 - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-03-24 |
ulicms 2020.1 - persistent cross-site scripting
|
webapps exploit |
php vulnerability |
2020-03-23 |
linux/x86 - 'reboot' polymorphic shellcode (26 bytes)
|
shellcode exploit |
linux_x86 vulnerability |
2020-03-23 |
joomla! com_hdwplayer 4.2 - 'search.php' sql injection
|
webapps exploit |
php vulnerability |
2020-03-23 |
rconfig 3.9.4 - 'search.crud.php' remote command injection
|
webapps exploit |
php vulnerability |
2020-03-23 |
fibaro system home center 5.021 - remote file include
|
webapps exploit |
multiple vulnerability |
2020-03-23 |
cyberark psmp 10.9.1 - policy restriction bypass
|
remote exploit |
multiple vulnerability |
2020-03-23 |
wordpress plugin picuploader 1.0 - remote file upload
|
webapps exploit |
php vulnerability |
2020-03-23 |
google chrome 80.0.3987.87 - heap-corruption remote denial of service (poc)
|
dos exploit |
windows vulnerability |
2020-03-23 |
proficyscada for ios 5.0.25920 - 'password' denial of service (poc)
|
dos exploit |
ios vulnerability |
2020-03-20 |
vmware fusion 11.5.2 - privilege escalation
|
local exploit |
macos vulnerability |
2020-03-20 |
exagate sysguard 6001 - cross-site request forgery (add admin)
|
webapps exploit |
php vulnerability |
2020-03-18 |
broadcom wi-fi devices - 'kr00k information disclosure
|
remote exploit |
multiple vulnerability |
2020-03-17 |
vmware fusion - local privilege escalation
|
local exploit |
macos vulnerability |
2020-03-17 |
microsoft vscode python extension - code execution
|
local exploit |
multiple vulnerability |
2020-03-18 |
joomla! component acymailing 3.9.0 - unauthenticated arbitrary file upload
|
webapps exploit |
php vulnerability |
2020-03-18 |
windows/x64 - dynamic messageboxa or messageboxw peb & import table method shellcode (232 bytes)
|
shellcode exploit |
windows_x86-64 vulnerability |
2020-03-18 |
microtik ssh daemon 6.44.3 - denial of service (poc)
|
dos exploit |
hardware vulnerability |
2020-03-18 |
netbackup 7.0 - 'netbackup inet daemon' unquoted service path
|
local exploit |
windows vulnerability |
2020-03-18 |
manually exploiting intel amt vulnerability cve 2017-5689 [paper]
|
papers exploit |
hardware vulnerability |
2020-03-18 |
netlink gpon router 1.0.11 - remote code execution
|
webapps exploit |
hardware vulnerability |
2020-03-17 |
manageengine desktop central - java deserialization (metasploit)
|
remote exploit |
multiple vulnerability |
2020-03-17 |
rconfig 3.x - chained remote code execution (metasploit)
|
remote exploit |
linux vulnerability |
2020-03-17 |
uadmin botnet 1.0 - 'link' sql injection
|
webapps exploit |
php vulnerability |
2020-03-16 |
phpkb multi-language 9 - 'image-upload.php' authenticated remote code execution
|
webapps exploit |
php vulnerability |
2020-03-16 |
phpkb multi-language 9 - authenticated directory traversal
|
webapps exploit |
php vulnerability |
2020-03-16 |
phpkb multi-language 9 - authenticated remote code execution
|
webapps exploit |
php vulnerability |
2020-03-16 |
miladworkshop vip system 1.0 - 'lang' sql injection
|
webapps exploit |
php vulnerability |
2020-03-16 |
enhanced multimedia router 3.0.4.27 - cross-site request forgery (add admin)
|
webapps exploit |
asp vulnerability |
2020-03-14 |
microsoft windows 10 (1903/1909) - 'smbghost' smb3.1.1 'smb2_compression_capabilities' buffer overflow (poc)
|
dos exploit |
windows vulnerability |
2020-03-10 |
horde groupware webmail edition 5.2.22 - remote code execution
|
webapps exploit |
php vulnerability |
2020-03-13 |
drobo 5n2 4.1.1 - remote command injection
|
remote exploit |
hardware vulnerability |
2020-03-13 |
wordpress plugin custom searchable data system - unauthenticated data m]odification
|
webapps exploit |
php vulnerability |
2020-03-13 |
centos webpanel 7 - 'term' sql injection
|
webapps exploit |
linux vulnerability |
2020-03-13 |
anyburn 4.8 - buffer overflow (seh)
|
local exploit |
windows vulnerability |
2020-03-11 |
horde groupware webmail edition 5.2.22 - phar loading
|
webapps exploit |
php vulnerability |
2020-03-11 |
horde groupware webmail edition 5.2.22 - php file inclusion
|
webapps exploit |
php vulnerability |
2020-03-12 |
rconfig 3.9 - 'searchcolumn' sql injection
|
webapps exploit |
php vulnerability |
2020-03-12 |
rconfig 3.93 - 'ajaxaddtemplate.php' authenticated remote code execution
|
webapps exploit |
php vulnerability |
2020-03-12 |
asus aahm 1.00.22 - 'ashmcomsvc' unquoted service path
|
local exploit |
windows vulnerability |
2020-03-12 |
hrsale 1.1.8 - cross-site request forgery (add admin)
|
webapps exploit |
php vulnerability |
2020-03-12 |
wordpress plugin appointment booking calendar 1.3.34 - csv injection
|
webapps exploit |
php vulnerability |
2020-03-12 |
watchguard fireware ad helper component 5.8.5.10317 - credential disclosure
|
webapps exploit |
java vulnerability |
2020-03-12 |
joomla! component com_newsfeeds 1.0 - 'feedid' sql injection
|
webapps exploit |
php vulnerability |
2020-03-11 |
teamcity agent xml-rpc 10.0 - remote code execution
|
webapps exploit |
php vulnerability |
2020-03-11 |
wing ftp server - authenticated csrf (delete admin)
|
webapps exploit |
php vulnerability |
2020-03-11 |
playsms 1.4.3 - template injection / remote code execution
|
webapps exploit |
php vulnerability |
2020-03-11 |
joomla! 3.9.0 < 3.9.7 - csv injection
|
webapps exploit |
php vulnerability |
2020-03-11 |
wordpress plugin search meter 2.13.2 - csv injection
|
webapps exploit |
php vulnerability |
2020-03-11 |
ctroms terminal os port portal - 'password reset' authentication bypass (metasploit)
|
remote exploit |
linux vulnerability |