The Exploit Database

Syndikovat obsah
The Exploit Database - Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, Security Articles, Tutorials and more.
Aktualizace: 7 min 52 sek zpět

[webapps] OpenClinic GA 5.247.01 - Path Traversal (Authenticated)

15 Duben, 2024 - 02:00
OpenClinic GA 5.247.01 - Path Traversal (Authenticated)

[webapps] OpenClinic GA 5.247.01 - Information Disclosure

15 Duben, 2024 - 02:00
OpenClinic GA 5.247.01 - Information Disclosure

[webapps] Jenkins 2.441 - Local File Inclusion

15 Duben, 2024 - 02:00
Jenkins 2.441 - Local File Inclusion

[webapps] djangorestframework-simplejwt 5.3.1 - Information Disclosure

15 Duben, 2024 - 02:00
djangorestframework-simplejwt 5.3.1 - Information Disclosure

[webapps] BMC Compuware iStrobe Web - 20.13 - Pre-auth RCE

13 Duben, 2024 - 02:00
BMC Compuware iStrobe Web - 20.13 - Pre-auth RCE

[webapps] Stock Management System v1.0 - Unauthenticated SQL Injection

13 Duben, 2024 - 02:00
Stock Management System v1.0 - Unauthenticated SQL Injection

[webapps] Online Fire Reporting System OFRS - SQL Injection Authentication Bypass

13 Duben, 2024 - 02:00
Online Fire Reporting System OFRS - SQL Injection Authentication Bypass

[webapps] Savsoft Quiz v6.0 Enterprise - Stored XSS

13 Duben, 2024 - 02:00
Savsoft Quiz v6.0 Enterprise - Stored XSS

[webapps] Wordpress Plugin WP Video Playlist 1.1.1 - Stored Cross-Site Scripting (XSS)

12 Duben, 2024 - 02:00
Wordpress Plugin WP Video Playlist 1.1.1 - Stored Cross-Site Scripting (XSS)

[webapps] WBCE CMS Version 1.6.1 - Remote Command Execution (Authenticated)

12 Duben, 2024 - 02:00
WBCE CMS Version 1.6.1 - Remote Command Execution (Authenticated)

[webapps] WBCE 1.6.0 - Unauthenticated SQL injection

12 Duben, 2024 - 02:00
WBCE 1.6.0 - Unauthenticated SQL injection

[webapps] Moodle 3.10.1 - Authenticated Blind Time-Based SQL Injection - "sort" parameter

12 Duben, 2024 - 02:00
Moodle 3.10.1 - Authenticated Blind Time-Based SQL Injection - "sort" parameter

[local] PrusaSlicer 2.6.1 - Arbitrary code execution

12 Duben, 2024 - 02:00
PrusaSlicer 2.6.1 - Arbitrary code execution

[webapps] PopojiCMS Version 2.0.1 - Remote Command Execution

12 Duben, 2024 - 02:00
PopojiCMS Version 2.0.1 - Remote Command Execution

[webapps] Wordpress Plugin Playlist for Youtube 1.32 - Stored Cross-Site Scripting (XSS)

12 Duben, 2024 - 02:00
Wordpress Plugin Playlist for Youtube 1.32 - Stored Cross-Site Scripting (XSS)

[webapps] HTMLy Version v2.9.6 - Stored XSS

12 Duben, 2024 - 02:00
HTMLy Version v2.9.6 - Stored XSS

[webapps] Ray OS v2.6.3 - Command Injection RCE(Unauthorized)

12 Duben, 2024 - 02:00
Ray OS v2.6.3 - Command Injection RCE(Unauthorized)

[local] Terratec dmx_6fire USB - Unquoted Service Path

12 Duben, 2024 - 02:00
Terratec dmx_6fire USB - Unquoted Service Path

[remote] MinIO < 2024-01-31T20-20-33Z - Privilege Escalation

12 Duben, 2024 - 02:00
MinIO < 2024-01-31T20-20-33Z - Privilege Escalation

[webapps] GUnet OpenEclass E-learning platform 3.15 - 'certbadge.php' Unrestricted File Upload

12 Duben, 2024 - 02:00
GUnet OpenEclass E-learning platform 3.15 - 'certbadge.php' Unrestricted File Upload