Security Vulnerabilities & Exploits

[webapps] GetSimple CMS 3.3.16 - Reflected XSS to RCE

The Exploit Database - 30 Březen, 2021 - 02:00
GetSimple CMS 3.3.16 - Reflected XSS to RCE

DSA-4881 curl

Debian.org [Security] - 30 Březen, 2021 - 00:00
security update

Vsftpd 3.0.3 Denial Of Service

Intelligent Exploit - 29 Březen, 2021 - 06:00
Vsftpd 3.0.3 Denial Of Service

Budget Management System 1.0 Cross Site Scripting

Intelligent Exploit - 29 Březen, 2021 - 06:00
Budget Management System 1.0 Cross Site Scripting

SyncBreeze 10.1.16 Buffer Overflow

Intelligent Exploit - 29 Březen, 2021 - 06:00
SyncBreeze 10.1.16 Buffer Overflow

Health Center Patient Record Management System 1.0 Cross Site Scripting

Intelligent Exploit - 29 Březen, 2021 - 06:00
Health Center Patient Record Management System 1.0 Cross Site Scripting

Equipment Inventory System 1.0 Cross Site Scripting

Intelligent Exploit - 29 Březen, 2021 - 06:00
Equipment Inventory System 1.0 Cross Site Scripting

Project Expense Monitoring System 1.0 SQL Injection

Intelligent Exploit - 29 Březen, 2021 - 06:00
Project Expense Monitoring System 1.0 SQL Injection

Novel Boutique House-plus 3.5.1 Arbitrary File Download

Intelligent Exploit - 29 Březen, 2021 - 06:00
Novel Boutique House-plus 3.5.1 Arbitrary File Download

[webapps] SyncBreeze 10.1.16 - XML Parsing Stack-based Buffer Overflow

The Exploit Database - 29 Březen, 2021 - 02:00
SyncBreeze 10.1.16 - XML Parsing Stack-based Buffer Overflow

[webapps] Novel Boutique House-plus 3.5.1 - Arbitrary File Download

The Exploit Database - 29 Březen, 2021 - 02:00
Novel Boutique House-plus 3.5.1 - Arbitrary File Download

[webapps] Budget Management System 1.0 - 'Budget title' Stored XSS

The Exploit Database - 29 Březen, 2021 - 02:00
Budget Management System 1.0 - 'Budget title' Stored XSS

[webapps] Equipment Inventory System 1.0 - 'multiple' Stored XSS

The Exploit Database - 29 Březen, 2021 - 02:00
Equipment Inventory System 1.0 - 'multiple' Stored XSS

[webapps] Concrete5 8.5.4 - 'name' Stored XSS

The Exploit Database - 29 Březen, 2021 - 02:00
Concrete5 8.5.4 - 'name' Stored XSS

[webapps] TP-Link Devices - 'setDefaultHostname' Stored Cross-site Scripting (Unauthenticated)

The Exploit Database - 29 Březen, 2021 - 02:00
TP-Link Devices - 'setDefaultHostname' Stored Cross-site Scripting (Unauthenticated)

[remote] vsftpd 3.0.3 - Remote Denial of Service

The Exploit Database - 29 Březen, 2021 - 02:00
vsftpd 3.0.3 - Remote Denial of Service

[webapps] WordPress Plugin WP Super Cache 1.7.1 - Remote Code Execution (Authenticated)

The Exploit Database - 29 Březen, 2021 - 02:00
WordPress Plugin WP Super Cache 1.7.1 - Remote Code Execution (Authenticated)

DSA-4880 lxml

Debian.org [Security] - 29 Březen, 2021 - 00:00
security update

Obra soft Sql Injection Vulnerability

Intelligent Exploit - 27 Březen, 2021 - 06:00
Obra soft Sql Injection Vulnerability

FortiLogger Arbitrary File Upload

Intelligent Exploit - 27 Březen, 2021 - 06:00
FortiLogger Arbitrary File Upload
Syndikovat obsah