Security Vulnerabilities & Exploits

[webapps] OpenEMR 7.0.2 - Arbitrary File Read

The Exploit Database - 8 Červen, 2026 - 02:00
OpenEMR 7.0.2 - Arbitrary File Read

[webapps] WordPress Contest Gallery 28.1.4 - Unauthenticated Blind SQL Injection

The Exploit Database - 5 Červen, 2026 - 02:00
WordPress Contest Gallery 28.1.4 - Unauthenticated Blind SQL Injection

[webapps] Drupal Core 10.5.5 - Error-Based SQL Injection

The Exploit Database - 1 Červen, 2026 - 02:00
Drupal Core 10.5.5 - Error-Based SQL Injection

[webapps] WordPress OrderConvo 14 - Path Traversal

The Exploit Database - 1 Červen, 2026 - 02:00
WordPress OrderConvo 14 - Path Traversal

[remote] Notepad++ 8.9.6 - Arbitrary Code Execution

The Exploit Database - 30 Květen, 2026 - 02:00
Notepad++ 8.9.6 - Arbitrary Code Execution

[webapps] YAMCS yamcs-core 5.12.7 - No Rate Limiting

The Exploit Database - 30 Květen, 2026 - 02:00
YAMCS yamcs-core 5.12.7 - No Rate Limiting

[webapps] YAMCS yamcs-core 5.12.7 - User Enumeration

The Exploit Database - 30 Květen, 2026 - 02:00
YAMCS yamcs-core 5.12.7 - User Enumeration

[webapps] YAMCS yamcs-core 5.12.7 - LDAP Injection

The Exploit Database - 30 Květen, 2026 - 02:00
YAMCS yamcs-core 5.12.7 - LDAP Injection

[remote] Microsoft - NTLMv2 Hash Capture

The Exploit Database - 29 Květen, 2026 - 02:00
Microsoft - NTLMv2 Hash Capture

[webapps] MikroORM 7.0.13 - SQL Injection

The Exploit Database - 29 Květen, 2026 - 02:00
MikroORM 7.0.13 - SQL Injection

[webapps] Prodigy Commerce 3.3.0 - Local File Inclusion

The Exploit Database - 29 Květen, 2026 - 02:00
Prodigy Commerce 3.3.0 - Local File Inclusion

[webapps] Langflow 1.3.0 - Remote Code Execution

The Exploit Database - 29 Květen, 2026 - 02:00
Langflow 1.3.0 - Remote Code Execution

[webapps] Quick Playground for WordPress 1.3.1 - Unauthenticated Remote Code Execution

The Exploit Database - 29 Květen, 2026 - 02:00
Quick Playground for WordPress 1.3.1 - Unauthenticated Remote Code Execution

[local] ImageMagick - Infinite Loop in the MIFF decoder can lead to CPU exhaustion

The Exploit Database - 29 Květen, 2026 - 02:00
ImageMagick - Infinite Loop in the MIFF decoder can lead to CPU exhaustion

[local] ZTE Routers - Unauthenticated Denial of Service

The Exploit Database - 29 Květen, 2026 - 02:00
ZTE Routers - Unauthenticated Denial of Service

[local] ZTE ZXHN H188A V6 - Authentication Bypass

The Exploit Database - 29 Květen, 2026 - 02:00
ZTE ZXHN H188A V6 - Authentication Bypass

[local] ZTE H298A / H108N - Unauthenticated Credential Exposure

The Exploit Database - 29 Květen, 2026 - 02:00
ZTE H298A / H108N - Unauthenticated Credential Exposure

[local] Linux Kernel - Local Privilege Escalation

The Exploit Database - 29 Květen, 2026 - 02:00
Linux Kernel - Local Privilege Escalation

[webapps] MixPHP Framework 2.2.17 - Unsafe Deserialization Remote Code Execution

The Exploit Database - 29 Květen, 2026 - 02:00
MixPHP Framework 2.2.17 - Unsafe Deserialization Remote Code Execution

[remote] Wing FTP Server 8.1.3 - Authenticated Remote Code Execution

The Exploit Database - 29 Květen, 2026 - 02:00
Wing FTP Server 8.1.3 - Authenticated Remote Code Execution
Syndikovat obsah