2019-03-04 |
zzzphp cms 1.6.1 - cross-site request forgery
|
webapps exploit |
php vulnerability |
2019-03-04 |
splunk enterprise 7.2.4 - custom app remote command execution (persistent backdoor / custom binary)
|
webapps exploit |
windows vulnerability |
2019-03-04 |
booked scheduler 2.7.5 - remote command execution (metasploit)
|
webapps exploit |
php vulnerability |
2019-03-04 |
microsoft edge chakra 1.11.4 - read permission via type confusion
|
dos exploit |
windows vulnerability |
2019-03-04 |
filezilla 3.40.0 - 'local search' / 'local site' denial of service (poc)
|
dos exploit |
linux vulnerability |
2019-03-04 |
oop cms blog 1.0 - multiple cross-site request forgery
|
webapps exploit |
php vulnerability |
2019-03-04 |
oop cms blog 1.0 - multiple sql injection
|
webapps exploit |
php vulnerability |
2019-03-04 |
elfinder 2.1.47 - 'php connector' command injection
|
webapps exploit |
php vulnerability |
2019-03-04 |
cmssite 1.0 - multiple cross-site request forgery
|
webapps exploit |
php vulnerability |
2019-03-01 |
cisco webex meetings < 33.6.6 / < 33.9.1 - privilege escalation
|
local exploit |
windows vulnerability |
2019-03-01 |
macos xnu - copy-on-write behavior bypass via mount of user-owned filesystem image
|
dos exploit |
macos vulnerability |
2019-03-01 |
linux < 4.14.103 / < 4.19.25 - out-of-bounds read and write in snmp nat module
|
dos exploit |
linux vulnerability |
2019-03-01 |
tcpdump < 4.9.3 - multiple heap-based out-of-bounds reads
|
dos exploit |
multiple vulnerability |
2019-03-01 |
google chrome < m72 - filewriterimpl use-after-free
|
dos exploit |
multiple vulnerability |
2019-03-01 |
google chrome < m72 - use-after-free in renderprocesshostimpl binding for p2psocketdispatcherhost
|
dos exploit |
multiple vulnerability |
2019-03-01 |
google chrome < m72 - renderframehostimpl::createmediastreamdispatcherhost use-after-free
|
dos exploit |
multiple vulnerability |
2019-03-01 |
google chrome < m72 - paymentrequest service use-after-free
|
dos exploit |
multiple vulnerability |
2019-02-28 |
feng office 3.7.0.5 - remote command execution (metasploit)
|
webapps exploit |
php vulnerability |
2019-02-28 |
transmac 12.3 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-02-28 |
alcatel-lucent (nokia) gpon i-240w-q - buffer overflow
|
remote exploit |
hardware vulnerability |
2019-02-28 |
usermin 1.750 - remote command execution (metasploit)
|
webapps exploit |
linux vulnerability |
2019-02-28 |
joomla! component j2store < 3.3.7 - sql injection
|
webapps exploit |
php vulnerability |
2019-02-28 |
crypto wallet local storage attack
|
papers exploit |
multiple vulnerability |
2019-02-28 |
webkitgtk 2.23.90 / webkitgtk+ 2.22.6 - denial of service
|
dos exploit |
linux vulnerability |
2019-02-28 |
ftp server 1.32 - denial of service
|
dos exploit |
android vulnerability |
2019-02-28 |
simple online hotel reservation system - cross-site request forgery (delete admin)
|
webapps exploit |
php vulnerability |
2019-02-28 |
simple online hotel reservation system - cross-site request forgery (add admin)
|
webapps exploit |
php vulnerability |
2019-02-28 |
simple online hotel reservation system - sql injection
|
webapps exploit |
php vulnerability |
2019-02-22 |
wordpress core 5.0 - remote code execution
|
papers exploit |
php vulnerability |
2019-02-25 |
drupal < 8.6.9 - rest module remote code execution
|
webapps exploit |
php vulnerability |
2019-02-25 |
xlight ftp server 3.9.1 - buffer overflow (poc)
|
dos exploit |
windows vulnerability |
2019-02-25 |
advance gift shop pro script 2.0.3 - sql injection
|
webapps exploit |
php vulnerability |
2019-02-25 |
news website script 2.0.5 - sql injection
|
webapps exploit |
php vulnerability |
2019-02-25 |
php ecommerce script 2.0.6 - cross-site scripting / sql injection
|
webapps exploit |
php vulnerability |
2019-02-25 |
zzzphp cms 1.6.1 - remote code execution
|
webapps exploit |
php vulnerability |
2019-02-25 |
jenkins plugin script security 1.49/declarative 1.3.4/groovy 2.60 - remote code execution
|
webapps exploit |
java vulnerability |
2019-02-23 |
drupal < 8.6.10 / < 8.5.11 - rest module remote code execution
|
webapps exploit |
php vulnerability |
2019-02-22 |
teracue enc-400 - command injection / missing authentication
|
webapps exploit |
hardware vulnerability |
2019-02-22 |
micro focus filr 3.4.0.217 - path traversal / local privilege escalation
|
webapps exploit |
linux vulnerability |
2019-02-22 |
nuuo central management - (authenticated) sql server sql injection (metasploit)
|
remote exploit |
windows vulnerability |
2019-02-22 |
webkit jsc - reifystaticproperty needs to set the propertyattribute::customaccessor flag for customgettersetter
|
dos exploit |
multiple vulnerability |
2019-02-22 |
protecting windows privilege accounts
|
papers exploit |
windows vulnerability |
2019-02-22 |
quest netvault backup server < 11.4.5 - process manager service sql injection / remote code execution
|
webapps exploit |
multiple vulnerability |
2019-02-21 |
airdrop 2.0 - denial of service (dos)
|
dos exploit |
android vulnerability |
2019-02-21 |
mikrotik routeros < 6.43.12 (stable) / < 6.42.12 (long-term) - firewall and nat bypass
|
remote exploit |
hardware vulnerability |
2019-02-21 |
screenstream 3.0.15 - denial of service
|
dos exploit |
android vulnerability |
2019-02-21 |
virtual vcr max .0a - '.vcr' buffer overflow (poc)
|
dos exploit |
windows vulnerability |
2019-02-21 |
realterm serial terminal 2.0.0.70 - 'echo port' buffer overflow (seh)
|
local exploit |
windows vulnerability |
2019-02-21 |
ei-tube 3 - sql injection
|
webapps exploit |
php vulnerability |
2019-02-21 |
valentina studio 9.0.5 linux - 'host' buffer overflow (poc)
|
dos exploit |
linux vulnerability |