2021-11-17 |
quick.cms 6.7 - cross site request forgery (csrf) to cross site scripting (xss) (authenticated)
|
webapps exploit |
php vulnerability |
2021-11-17 |
bludit 3.13.1 - 'username' cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-16 |
pass-the-hash attack on named pipes against eset server security - paper (spanish)
|
papers exploit |
windows vulnerability |
2021-11-16 |
cmdbuild 3.3.2 - 'multiple' cross site scripting (xss)
|
webapps exploit |
multiple vulnerability |
2021-11-16 |
online learning system 2.0 - remote code execution (rce)
|
webapps exploit |
php vulnerability |
2021-11-15 |
php laravel 8.70.1 - cross site scripting (xss) to cross site request forgery (csrf)
|
webapps exploit |
php vulnerability |
2021-11-15 |
wordpress plugin contact form to email 1.3.24 - stored cross site scripting (xss) (authenticated)
|
webapps exploit |
php vulnerability |
2021-11-15 |
fuel cms 1.4.13 - 'col' blind sql injection (authenticated)
|
webapps exploit |
php vulnerability |
2021-11-15 |
simple subscription website 1.0 - sqli authentication bypass
|
webapps exploit |
php vulnerability |
2021-11-15 |
konga 0.14.9 - privilege escalation
|
webapps exploit |
multiple vulnerability |
2021-11-15 |
wordpress plugin wpschoolpress 2.1.16 - 'multiple' cross site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-12 |
mumara classic 2.93 - 'license' sql injection (unauthenticated)
|
webapps exploit |
multiple vulnerability |
2021-11-12 |
windows multipoint server 2011 sp1 - rpceptmapper and dnschade local privilege escalation
|
local exploit |
windows vulnerability |
2021-11-12 |
xlight ftp 3.9.3.1 - buffer overflow (poc)
|
dos exploit |
windows vulnerability |
2021-11-12 |
wordpress plugin accesspress social icons 1.8.2 - 'icon title' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-12 |
wordpress plugin wp symposium pro 2021.10 - 'wps_admin_forum_add_name' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-11 |
formalms 2.4.4 - authentication bypass
|
webapps exploit |
multiple vulnerability |
2021-11-11 |
apache http server 2.4.50 - remote code execution (rce) (3)
|
webapps exploit |
multiple vulnerability |
2021-11-11 |
absolutetelnet 11.24 - 'phone' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-11-11 |
absolutetelnet 11.24 - 'username' denial of service (poc)
|
dos exploit |
windows vulnerability |
2021-11-11 |
yealink sip-txxxp 53.84.0.15 - 'cmd' command injection (authenticated)
|
webapps exploit |
hardware vulnerability |
2021-11-10 |
employee and visitor gate pass logging system 1.0 - 'name' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-10 |
employee daily task management system 1.0 - 'name' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-08 |
fusionpbx 4.5.29 - remote code execution (rce) (authenticated)
|
webapps exploit |
php vulnerability |
2021-11-08 |
zlog 1.2.15 - buffer overflow
|
local exploit |
multiple vulnerability |
2021-11-08 |
wordpress plugin backup and restore 1.0.3 - arbitrary file deletion
|
webapps exploit |
php vulnerability |
2021-11-08 |
froxlor 0.10.29.1 - sql injection (authenticated)
|
webapps exploit |
php vulnerability |
2021-11-08 |
money transfer management system 1.0 - authentication bypass
|
webapps exploit |
php vulnerability |
2021-11-08 |
my neighbor's flat smells like data - paper
|
papers exploit |
multiple vulnerability |
2021-11-08 |
kmaleon 1.1.0.205 - 'tipocomb' sql injection (authenticated)
|
webapps exploit |
php vulnerability |
2021-11-08 |
simple client management system 1.0 - 'multiple' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-08 |
simple client management system 1.0 - sqli (authentication bypass)
|
webapps exploit |
php vulnerability |
2021-11-05 |
importexporttools ng 10.0.4 - html injection
|
webapps exploit |
multiple vulnerability |
2021-11-05 |
payment terminal 3.1 - 'multiple' cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-05 |
10-strike network inventory explorer pro 9.31 - 'srvinventorywebserver' unquoted service path
|
local exploit |
windows vulnerability |
2021-11-04 |
opencart 3 extension tmd vendor system - blind sql injection
|
webapps exploit |
php vulnerability |
2021-11-03 |
ultimate pos 4.4 - 'name' cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-03 |
vanguard 2.1 - 'search' cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-03 |
isshue shopping cart 3.5 - 'title' cross site scripting (xss)
|
webapps exploit |
multiple vulnerability |
2021-11-03 |
mult-e-cart ultimate 2.4 - 'id' sql injection
|
webapps exploit |
php vulnerability |
2021-11-03 |
php melody 3.0 - persistent cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-03 |
php melody 3.0 - 'vid' sql injection
|
webapps exploit |
php vulnerability |
2021-11-03 |
php melody 3.0 - 'multiple' cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-03 |
sonicwall sonicos 6.5.4 - 'common name' cross-site scripting (xss)
|
webapps exploit |
hardware vulnerability |
2021-11-03 |
rdp manager 4.9.9.3 - denial-of-service (poc)
|
local exploit |
windows vulnerability |
2021-11-03 |
simplephpscripts simple cms 2.1 - 'multiple' sql injection
|
webapps exploit |
php vulnerability |
2021-11-03 |
simplephpscripts simple cms 2.1 - 'multiple' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |
2021-11-03 |
estudio detallado de la ingenieria social - paper (spanish)
|
papers exploit |
multiple vulnerability |
2021-11-03 |
openam 13.0 - ldap injection
|
webapps exploit |
java vulnerability |
2021-11-03 |
wordpress plugin popup anything 2.0.3 - 'multiple' stored cross-site scripting (xss)
|
webapps exploit |
php vulnerability |