Security Vulnerabilities & Exploits

[webapps] Wordpress Plugin Playlist for Youtube 1.32 - Stored Cross-Site Scripting (XSS)

The Exploit Database - 12 Duben, 2024 - 02:00
Wordpress Plugin Playlist for Youtube 1.32 - Stored Cross-Site Scripting (XSS)

[webapps] HTMLy Version v2.9.6 - Stored XSS

The Exploit Database - 12 Duben, 2024 - 02:00
HTMLy Version v2.9.6 - Stored XSS

[webapps] Ray OS v2.6.3 - Command Injection RCE(Unauthorized)

The Exploit Database - 12 Duben, 2024 - 02:00
Ray OS v2.6.3 - Command Injection RCE(Unauthorized)

[local] Terratec dmx_6fire USB - Unquoted Service Path

The Exploit Database - 12 Duben, 2024 - 02:00
Terratec dmx_6fire USB - Unquoted Service Path

[remote] MinIO < 2024-01-31T20-20-33Z - Privilege Escalation

The Exploit Database - 12 Duben, 2024 - 02:00
MinIO < 2024-01-31T20-20-33Z - Privilege Escalation

[webapps] GUnet OpenEclass E-learning platform 3.15 - 'certbadge.php' Unrestricted File Upload

The Exploit Database - 12 Duben, 2024 - 02:00
GUnet OpenEclass E-learning platform 3.15 - 'certbadge.php' Unrestricted File Upload

Fuxnet: Disabling Russia&#039;s Industrial Sensor And Monitoring Infrastructure

Intelligent Exploit - 11 Duben, 2024 - 06:00
Fuxnet: Disabling Russia's Industrial Sensor And Monitoring Infrastructure

OX App Suite 7.10.6 Cross Site Scripting / Deserialization Issue

Intelligent Exploit - 11 Duben, 2024 - 06:00
OX App Suite 7.10.6 Cross Site Scripting / Deserialization Issue

Trimble TM4Web 22.2.0 Privilege Escalation / Access Code Disclosure

Intelligent Exploit - 11 Duben, 2024 - 06:00
Trimble TM4Web 22.2.0 Privilege Escalation / Access Code Disclosure

Concrete CMS 9.2.7 Cross Site Scripting / Open Redirect

Intelligent Exploit - 11 Duben, 2024 - 06:00
Concrete CMS 9.2.7 Cross Site Scripting / Open Redirect

GUnet OpenEclass E-learning 3.15 File Upload / Command Execution

Intelligent Exploit - 11 Duben, 2024 - 06:00
GUnet OpenEclass E-learning 3.15 File Upload / Command Execution

Trojan.Win32.Razy.abc / Insecure Permissions In memory IPC

Intelligent Exploit - 8 Duben, 2024 - 06:00
Trojan.Win32.Razy.abc / Insecure Permissions In memory IPC

HTMLy 2.9.6 Cross Site Scripting

Intelligent Exploit - 8 Duben, 2024 - 06:00
HTMLy 2.9.6 Cross Site Scripting

DerbyNet 9.0 render-document.php Cross Site Scripting

Intelligent Exploit - 8 Duben, 2024 - 06:00
DerbyNet 9.0 render-document.php Cross Site Scripting

Backdoor.Win32.Agent.ju PSYRAT / Authentication Bypass RCE

Intelligent Exploit - 8 Duben, 2024 - 06:00
Backdoor.Win32.Agent.ju PSYRAT / Authentication Bypass RCE

Savane v.3.12 Bad Seed Vulnerability and CSRF Bypass

Intelligent Exploit - 8 Duben, 2024 - 06:00
Savane v.3.12 Bad Seed Vulnerability and CSRF Bypass

UP-RESULT 0.1 2024 SQL Injection

Intelligent Exploit - 8 Duben, 2024 - 06:00
UP-RESULT 0.1 2024 SQL Injection

Daily Expense Manager 1.0 SQL Injection

Intelligent Exploit - 8 Duben, 2024 - 06:00
Daily Expense Manager 1.0 SQL Injection

Wordpress Plugin Membership For WooCommerce &lt; v2.1.7 Arbitrary File Upload to Shell Unauthentic

Intelligent Exploit - 8 Duben, 2024 - 06:00
Wordpress Plugin Membership For WooCommerce < v2.1.7 Arbitrary File Upload to Shell Unauthentic

AnyDesk 7.0.15 Unquoted Service Path

Intelligent Exploit - 8 Duben, 2024 - 06:00
AnyDesk 7.0.15 Unquoted Service Path
Syndikovat obsah