2019-02-15 |
qdpm 9.1 - 'search_by_extrafields[]' sql injection
|
webapps exploit |
php vulnerability |
2019-02-15 |
jinja2 2.10 - 'from_string' server side template injection
|
webapps exploit |
python vulnerability |
2019-02-15 |
vsco 1.1.1.0 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-02-15 |
mybb trash bin plugin 1.1.3 - cross-site scripting / cross-site request forgery
|
webapps exploit |
php vulnerability |
2019-02-15 |
navicat for oracle 12.1.15 - "password" denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-02-15 |
free ip switcher 3.1 - 'computer name' denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-02-15 |
airmore 1.6.1 - denial of service (poc)
|
dos exploit |
android vulnerability |
2019-02-14 |
apowermanager 3.1.7 - phone manager remote denial of service (poc)
|
dos exploit |
android vulnerability |
2019-02-14 |
layerbb 1.1.2 - cross-site request forgery (add admin)
|
webapps exploit |
php vulnerability |
2019-02-14 |
mediamonkey 4.1.23 - '.mp3' url denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-02-14 |
wordpress plugin booking calendar 8.4.3 - (authenticated) sql injection
|
webapps exploit |
php vulnerability |
2019-02-14 |
domainmod 4.11.01 - 'assets/edit/host.php?whid=5' cross-site scripting
|
webapps exploit |
php vulnerability |
2019-02-14 |
domainmod 4.11.01 - 'assets/add/dns.php' cross-site scripting
|
webapps exploit |
php vulnerability |
2019-02-14 |
domainmod 4.11.01 - 'category.php catagoryname, stakeholder' cross-site scripting
|
webapps exploit |
php vulnerability |
2019-02-14 |
domainmod 4.11.01 - 'ssl-accounts.php username' cross-site scripting
|
webapps exploit |
php vulnerability |
2019-02-14 |
domainmod 4.11.01 - 'ssl-provider-name' cross-site scripting
|
webapps exploit |
php vulnerability |
2019-02-14 |
core ftp/sftp server 1.2 build 589.42 - 'user domain' denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-02-14 |
exacqvision esm 5.12.2 - privilege escalation
|
local exploit |
windows vulnerability |
2019-02-13 |
runc < 1.0-rc6 (docker < 18.09.2) - container breakout (2)
|
local exploit |
linux vulnerability |
2019-02-13 |
piluscart 1.4.1 - 'send' sql injection
|
webapps exploit |
php vulnerability |
2019-02-13 |
networksleuth 3.0 - 'name' denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-02-13 |
rukovoditel project management crm 2.4.1 - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-02-13 |
snapd < 2.37 (ubuntu) - 'dirty_sock' local privilege escalation (2)
|
local exploit |
linux vulnerability |
2019-02-13 |
snapd < 2.37 (ubuntu) - 'dirty_sock' local privilege escalation (1)
|
local exploit |
linux vulnerability |
2019-02-12 |
runc < 1.0-rc6 (docker < 18.09.2) - container breakout (1)
|
local exploit |
linux vulnerability |
2019-02-12 |
skyworth gpon homegateways and optical network terminals - stack overflow
|
dos exploit |
asp vulnerability |
2019-02-12 |
android - binder use-after-free of vma via race between reclaim and munmap
|
dos exploit |
android vulnerability |
2019-02-12 |
android - binder use-after-free via fdget() optimization
|
dos exploit |
android vulnerability |
2019-02-12 |
layerbb 1.1.2 - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-02-12 |
blogengine.net 3.3.6 - directory traversal / remote code execution
|
webapps exploit |
aspx vulnerability |
2019-02-12 |
jenkins 2.150.2 - remote command execution (metasploit)
|
webapps exploit |
linux vulnerability |
2019-02-12 |
opnsense < 19.1.1 - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-02-11 |
webiness inventory 2.3 - 'email' sql injection
|
webapps exploit |
php vulnerability |
2019-02-11 |
centos web panel 0.9.8.763 - persistent cross-site scripting
|
webapps exploit |
linux vulnerability |
2019-02-11 |
va max 8.3.4 - (authenticated) remote code execution
|
webapps exploit |
php vulnerability |
2019-02-11 |
mybb bans list 1.0 - cross-site scripting
|
webapps exploit |
php vulnerability |
2019-02-11 |
river past video cleaner 7.6.3 - local buffer overflow (seh)
|
local exploit |
windows vulnerability |
2019-02-11 |
avast anti-virus < 19.1.2360 - local credentials disclosure
|
local exploit |
windows vulnerability |
2019-02-11 |
ipfire 2.21 - cross-site scripting
|
webapps exploit |
cgi vulnerability |
2019-02-11 |
nordvpn 6.19.6 - denial of service (poc)
|
dos exploit |
windows vulnerability |
2019-02-11 |
indusoft web studio 8.1 sp2 - remote code execution
|
remote exploit |
multiple vulnerability |
2019-02-11 |
evince - cbt file command injection (metasploit)
|
local exploit |
linux vulnerability |
2019-02-11 |
nuuo nvrmini - upgrade_handle.php remote command execution (metasploit)
|
remote exploit |
php vulnerability |
2019-02-11 |
adobe flash player - deleterangetimelineoperation type confusion (metasploit)
|
remote exploit |
osx vulnerability |
2019-02-11 |
futuredj pro 1.7.2.0 - denial of service
|
dos exploit |
windows vulnerability |
2019-02-11 |
airdroid 4.2.1.6 - denial of service
|
dos exploit |
android vulnerability |
2019-02-11 |
coship wireless router 4.0.0.x/5.0.0.x - wifi password reset
|
webapps exploit |
hardware vulnerability |
2019-02-11 |
river past cam do 3.7.6 - local buffer overflow (seh)
|
local exploit |
windows vulnerability |
2019-02-11 |
ip-tools 2.5 - 'log to file' local buffer overflow (seh) (egghunter)
|
local exploit |
windows vulnerability |
2019-02-11 |
smoothwall express 3.1-sp4 - cross-site scripting
|
webapps exploit |
cgi vulnerability |