Security Vulnerabilities & Exploits

[webapps] Jenkins 2.441 - Local File Inclusion

The Exploit Database - 15 Duben, 2024 - 02:00
Jenkins 2.441 - Local File Inclusion

[webapps] djangorestframework-simplejwt 5.3.1 - Information Disclosure

The Exploit Database - 15 Duben, 2024 - 02:00
djangorestframework-simplejwt 5.3.1 - Information Disclosure

Bigem Teknoloji - Sql Injection

Intelligent Exploit - 14 Duben, 2024 - 06:00
Bigem Teknoloji - Sql Injection

Ray OS 2.6.3 Command Injection

Intelligent Exploit - 14 Duben, 2024 - 06:00
Ray OS 2.6.3 Command Injection

Casdoor < v1.331.0 /api/set-password CSRF

Intelligent Exploit - 14 Duben, 2024 - 06:00
Casdoor < v1.331.0 /api/set-password CSRF

MinIO &lt; 2024-01-31T20-20-33Z Privilege Escalation

Intelligent Exploit - 14 Duben, 2024 - 06:00
MinIO < 2024-01-31T20-20-33Z Privilege Escalation

Wordpress Plugin Playlist for Youtube 1.32 Stored Cross-Site Scripting XSS

Intelligent Exploit - 14 Duben, 2024 - 06:00
Wordpress Plugin Playlist for Youtube 1.32 Stored Cross-Site Scripting XSS

Terratec dmx_6fire USB 1.23.0.02 Unquoted Service Path

Intelligent Exploit - 14 Duben, 2024 - 06:00
Terratec dmx_6fire USB 1.23.0.02 Unquoted Service Path

Blood Bank v1.0 Stored Cross Site Scripting XSS

Intelligent Exploit - 14 Duben, 2024 - 06:00
Blood Bank v1.0 Stored Cross Site Scripting XSS

AMPLE BILLS 0.1 Multiple-SQLi

Intelligent Exploit - 14 Duben, 2024 - 06:00
AMPLE BILLS 0.1 Multiple-SQLi

[webapps] BMC Compuware iStrobe Web - 20.13 - Pre-auth RCE

The Exploit Database - 13 Duben, 2024 - 02:00
BMC Compuware iStrobe Web - 20.13 - Pre-auth RCE

[webapps] Stock Management System v1.0 - Unauthenticated SQL Injection

The Exploit Database - 13 Duben, 2024 - 02:00
Stock Management System v1.0 - Unauthenticated SQL Injection

[webapps] Online Fire Reporting System OFRS - SQL Injection Authentication Bypass

The Exploit Database - 13 Duben, 2024 - 02:00
Online Fire Reporting System OFRS - SQL Injection Authentication Bypass

[webapps] Savsoft Quiz v6.0 Enterprise - Stored XSS

The Exploit Database - 13 Duben, 2024 - 02:00
Savsoft Quiz v6.0 Enterprise - Stored XSS

[webapps] Wordpress Plugin WP Video Playlist 1.1.1 - Stored Cross-Site Scripting (XSS)

The Exploit Database - 12 Duben, 2024 - 02:00
Wordpress Plugin WP Video Playlist 1.1.1 - Stored Cross-Site Scripting (XSS)

[webapps] WBCE CMS Version 1.6.1 - Remote Command Execution (Authenticated)

The Exploit Database - 12 Duben, 2024 - 02:00
WBCE CMS Version 1.6.1 - Remote Command Execution (Authenticated)

[webapps] WBCE 1.6.0 - Unauthenticated SQL injection

The Exploit Database - 12 Duben, 2024 - 02:00
WBCE 1.6.0 - Unauthenticated SQL injection

[webapps] Moodle 3.10.1 - Authenticated Blind Time-Based SQL Injection - "sort" parameter

The Exploit Database - 12 Duben, 2024 - 02:00
Moodle 3.10.1 - Authenticated Blind Time-Based SQL Injection - "sort" parameter

[local] PrusaSlicer 2.6.1 - Arbitrary code execution

The Exploit Database - 12 Duben, 2024 - 02:00
PrusaSlicer 2.6.1 - Arbitrary code execution

[webapps] PopojiCMS Version 2.0.1 - Remote Command Execution

The Exploit Database - 12 Duben, 2024 - 02:00
PopojiCMS Version 2.0.1 - Remote Command Execution
Syndikovat obsah