Security Vulnerabilities & Exploits

[local] Solstice Pod 6.2 - API Session Key Extraction via API Endpoint

The Exploit Database - 29 Březen, 2025 - 02:00
Solstice Pod 6.2 - API Session Key Extraction via API Endpoint

[webapps] Progress Telerik Report Server 2024 Q1 (10.0.24.305) - Authentication Bypass

The Exploit Database - 28 Březen, 2025 - 02:00
Progress Telerik Report Server 2024 Q1 (10.0.24.305) - Authentication Bypass

[webapps] Rejetto HTTP File Server 2.3m - Remote Code Execution (RCE)

The Exploit Database - 28 Březen, 2025 - 02:00
Rejetto HTTP File Server 2.3m - Remote Code Execution (RCE)

[webapps] Sonatype Nexus Repository 3.53.0-01 - Path Traversal

The Exploit Database - 28 Březen, 2025 - 02:00
Sonatype Nexus Repository 3.53.0-01 - Path Traversal

[webapps] CodeCanyon RISE CRM 3.7.0 - SQL Injection

The Exploit Database - 28 Březen, 2025 - 02:00
CodeCanyon RISE CRM 3.7.0 - SQL Injection

[webapps] Litespeed Cache 6.5.0.1 - Authentication Bypass

The Exploit Database - 28 Březen, 2025 - 02:00
Litespeed Cache 6.5.0.1 - Authentication Bypass

[webapps] X2CRM 8.5 - Stored Cross-Site Scripting (XSS)

The Exploit Database - 27 Březen, 2025 - 02:00
X2CRM 8.5 - Stored Cross-Site Scripting (XSS)

[webapps] KubeSphere 3.4.0 - Insecure Direct Object Reference (IDOR)

The Exploit Database - 27 Březen, 2025 - 02:00
KubeSphere 3.4.0 - Insecure Direct Object Reference (IDOR)

[webapps] MoziloCMS 3.0 - Remote Code Execution (RCE)

The Exploit Database - 27 Březen, 2025 - 02:00
MoziloCMS 3.0 - Remote Code Execution (RCE)

[local] NVIDIA Container Toolkit 1.16.1 - Time-of-check Time-of-Use (TOCTOU)

The Exploit Database - 26 Březen, 2025 - 02:00
NVIDIA Container Toolkit 1.16.1 - Time-of-check Time-of-Use (TOCTOU)

[webapps] TeamPass 3.0.0.21 - SQL Injection

The Exploit Database - 22 Březen, 2025 - 02:00
TeamPass 3.0.0.21 - SQL Injection

[remote] Aztech DSL5005EN Router - 'sysAccess.asp' Admin Password Change (Unauthenticated)

The Exploit Database - 22 Březen, 2025 - 02:00
Aztech DSL5005EN Router - 'sysAccess.asp' Admin Password Change (Unauthenticated)

[remote] Microsoft Windows - NTLM Hash Leak Malicious Windows Theme

The Exploit Database - 22 Březen, 2025 - 02:00
Microsoft Windows - NTLM Hash Leak Malicious Windows Theme

[webapps] Jasmin Ransomware - SQL Injection Login Bypass

The Exploit Database - 21 Březen, 2025 - 02:00
Jasmin Ransomware - SQL Injection Login Bypass

[webapps] FluxBB 1.5.11 - Stored Cross-Site Scripting (XSS)

The Exploit Database - 20 Březen, 2025 - 02:00
FluxBB 1.5.11 - Stored Cross-Site Scripting (XSS)

[webapps] JUX Real Estate 3.4.0 - SQL Injection

The Exploit Database - 20 Březen, 2025 - 02:00
JUX Real Estate 3.4.0 - SQL Injection

DSA-5555 openvpn

Debian.org [Security] - 15 Listopad, 2023 - 01:00
security update

DSA-5552 ffmpeg

Debian.org [Security] - 12 Listopad, 2023 - 01:00
security update
Syndikovat obsah