The Exploit Database

Syndikovat obsah
The Exploit Database - Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, Security Articles, Tutorials and more.
Aktualizace: 26 sek zpět

[webapps] Wordpress Plugin Playlist for Youtube 1.32 - Stored Cross-Site Scripting (XSS)

12 Duben, 2024 - 02:00
Wordpress Plugin Playlist for Youtube 1.32 - Stored Cross-Site Scripting (XSS)

[webapps] HTMLy Version v2.9.6 - Stored XSS

12 Duben, 2024 - 02:00
HTMLy Version v2.9.6 - Stored XSS

[webapps] Ray OS v2.6.3 - Command Injection RCE(Unauthorized)

12 Duben, 2024 - 02:00
Ray OS v2.6.3 - Command Injection RCE(Unauthorized)

[local] Terratec dmx_6fire USB - Unquoted Service Path

12 Duben, 2024 - 02:00
Terratec dmx_6fire USB - Unquoted Service Path

[remote] MinIO < 2024-01-31T20-20-33Z - Privilege Escalation

12 Duben, 2024 - 02:00
MinIO < 2024-01-31T20-20-33Z - Privilege Escalation

[webapps] GUnet OpenEclass E-learning platform 3.15 - 'certbadge.php' Unrestricted File Upload

12 Duben, 2024 - 02:00
GUnet OpenEclass E-learning platform 3.15 - 'certbadge.php' Unrestricted File Upload

[webapps] Open Source Medicine Ordering System v1.0 - SQLi

8 Duben, 2024 - 02:00
Open Source Medicine Ordering System v1.0 - SQLi

[webapps] Daily Expense Manager 1.0 - 'term' SQLi

8 Duben, 2024 - 02:00
Daily Expense Manager 1.0 - 'term' SQLi

[webapps] Best Student Result Management System v1.0 - Multiple SQLi

8 Duben, 2024 - 02:00
Best Student Result Management System v1.0 - Multiple SQLi

[webapps] Human Resource Management System v1.0 - Multiple SQLi

8 Duben, 2024 - 02:00
Human Resource Management System v1.0 - Multiple SQLi

[remote] Positron Broadcast Signal Processor TRA7005 v1.20 - Authentication Bypass

8 Duben, 2024 - 02:00
Positron Broadcast Signal Processor TRA7005 v1.20 - Authentication Bypass

[webapps] Wordpress Theme Travelscape v1.0.3 - Arbitrary File Upload

8 Duben, 2024 - 02:00
Wordpress Theme Travelscape v1.0.3 - Arbitrary File Upload

[local] AnyDesk 7.0.15 - Unquoted Service Path

8 Duben, 2024 - 02:00
AnyDesk 7.0.15 - Unquoted Service Path

[webapps] Quick CMS v6.7 en 2023 - 'password' SQLi

3 Duben, 2024 - 02:00
Quick CMS v6.7 en 2023 - 'password' SQLi

[webapps] Wordpress Plugin Alemha Watermarker 1.3.1 - Stored Cross-Site Scripting (XSS)

3 Duben, 2024 - 02:00
Wordpress Plugin Alemha Watermarker 1.3.1 - Stored Cross-Site Scripting (XSS)

[webapps] Computer Laboratory Management System v1.0 - Multiple-SQLi

3 Duben, 2024 - 02:00
Computer Laboratory Management System v1.0 - Multiple-SQLi

[local] ESET NOD32 Antivirus 17.0.16.0 - Unquoted Service Path

3 Duben, 2024 - 02:00
ESET NOD32 Antivirus 17.0.16.0 - Unquoted Service Path

[webapps] Axigen < 10.5.7 - Persistent Cross-Site Scripting

2 Duben, 2024 - 02:00
Axigen < 10.5.7 - Persistent Cross-Site Scripting

[webapps] Gibbon LMS v26.0.00 - SSTI vulnerability

2 Duben, 2024 - 02:00
Gibbon LMS v26.0.00 - SSTI vulnerability

[webapps] Casdoor < v1.331.0 - '/api/set-password' CSRF

2 Duben, 2024 - 02:00
Casdoor < v1.331.0 - '/api/set-password' CSRF