The Exploit Database

Syndikovat obsah
The Exploit Database - Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, Security Articles, Tutorials and more.
Aktualizace: 14 min 46 sek zpět

[webapps] Flowise 1.6.5 - Authentication Bypass

21 Duben, 2024 - 02:00
Flowise 1.6.5 - Authentication Bypass

[webapps] Laravel Framework 11 - Credential Leakage

21 Duben, 2024 - 02:00
Laravel Framework 11 - Credential Leakage

[webapps] SofaWiki 3.9.2 - Remote Command Execution (RCE) (Authenticated)

21 Duben, 2024 - 02:00
SofaWiki 3.9.2 - Remote Command Execution (RCE) (Authenticated)

[webapps] Wordpress Plugin Background Image Cropper v1.2 - Remote Code Execution

21 Duben, 2024 - 02:00
Wordpress Plugin Background Image Cropper v1.2 - Remote Code Execution

[webapps] FlatPress v1.3 - Remote Command Execution

21 Duben, 2024 - 02:00
FlatPress v1.3 - Remote Command Execution

[remote] Palo Alto PAN-OS < v11.1.2-h3 - Command Injection and Arbitrary File Creation

21 Duben, 2024 - 02:00
Palo Alto PAN-OS < v11.1.2-h3 - Command Injection and Arbitrary File Creation

[webapps] OpenClinic GA 5.247.01 - Path Traversal (Authenticated)

15 Duben, 2024 - 02:00
OpenClinic GA 5.247.01 - Path Traversal (Authenticated)

[webapps] OpenClinic GA 5.247.01 - Information Disclosure

15 Duben, 2024 - 02:00
OpenClinic GA 5.247.01 - Information Disclosure

[webapps] Jenkins 2.441 - Local File Inclusion

15 Duben, 2024 - 02:00
Jenkins 2.441 - Local File Inclusion

[webapps] djangorestframework-simplejwt 5.3.1 - Information Disclosure

15 Duben, 2024 - 02:00
djangorestframework-simplejwt 5.3.1 - Information Disclosure

[webapps] BMC Compuware iStrobe Web - 20.13 - Pre-auth RCE

13 Duben, 2024 - 02:00
BMC Compuware iStrobe Web - 20.13 - Pre-auth RCE

[webapps] Stock Management System v1.0 - Unauthenticated SQL Injection

13 Duben, 2024 - 02:00
Stock Management System v1.0 - Unauthenticated SQL Injection

[webapps] Online Fire Reporting System OFRS - SQL Injection Authentication Bypass

13 Duben, 2024 - 02:00
Online Fire Reporting System OFRS - SQL Injection Authentication Bypass

[webapps] Savsoft Quiz v6.0 Enterprise - Stored XSS

13 Duben, 2024 - 02:00
Savsoft Quiz v6.0 Enterprise - Stored XSS

[webapps] Wordpress Plugin WP Video Playlist 1.1.1 - Stored Cross-Site Scripting (XSS)

12 Duben, 2024 - 02:00
Wordpress Plugin WP Video Playlist 1.1.1 - Stored Cross-Site Scripting (XSS)

[webapps] WBCE CMS Version 1.6.1 - Remote Command Execution (Authenticated)

12 Duben, 2024 - 02:00
WBCE CMS Version 1.6.1 - Remote Command Execution (Authenticated)

[webapps] WBCE 1.6.0 - Unauthenticated SQL injection

12 Duben, 2024 - 02:00
WBCE 1.6.0 - Unauthenticated SQL injection

[webapps] Moodle 3.10.1 - Authenticated Blind Time-Based SQL Injection - "sort" parameter

12 Duben, 2024 - 02:00
Moodle 3.10.1 - Authenticated Blind Time-Based SQL Injection - "sort" parameter

[local] PrusaSlicer 2.6.1 - Arbitrary code execution

12 Duben, 2024 - 02:00
PrusaSlicer 2.6.1 - Arbitrary code execution

[webapps] PopojiCMS Version 2.0.1 - Remote Command Execution

12 Duben, 2024 - 02:00
PopojiCMS Version 2.0.1 - Remote Command Execution