The Exploit Database

Syndikovat obsah
The Exploit Database - Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, Security Articles, Tutorials and more.
Aktualizace: 1 min 49 sek zpět

[webapps] CubeCart < 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)

29 Květen, 2026 - 02:00
CubeCart < 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)

[remote] strongSwan 5.9.13 - libsimaka EAP-SIM/AKA heap buffer overflow

29 Květen, 2026 - 02:00
strongSwan 5.9.13 - libsimaka EAP-SIM/AKA heap buffer overflow

[dos] strongSwan 5.9.13 - DoS

29 Květen, 2026 - 02:00
strongSwan 5.9.13 - DoS

[local] Linux Kernel - Local Privilege Escalation

27 Květen, 2026 - 02:00
Linux Kernel - Local Privilege Escalation

[webapps] Casdoor 3.54.1 - Arbitrary File Write via Path Traversal

27 Květen, 2026 - 02:00
Casdoor 3.54.1 - Arbitrary File Write via Path Traversal

[webapps] EspoCRM 9.3.3 - SSRF

27 Květen, 2026 - 02:00
EspoCRM 9.3.3 - SSRF

[webapps] scramble - Remote Code Execution

27 Květen, 2026 - 02:00
scramble - Remote Code Execution

[hardware] MeiG Smart FORGE_SLT711 - OS Command Injection

27 Květen, 2026 - 02:00
MeiG Smart FORGE_SLT711 - OS Command Injection

[local] Realtek rtl819x - Local Privilege

27 Květen, 2026 - 02:00
Realtek rtl819x - Local Privilege

[webapps] OpenCATS 0.9.7.4 - SQL Injection

27 Květen, 2026 - 02:00
OpenCATS 0.9.7.4 - SQL Injection

[webapps] Grav CMS 2.0.0-beta.2 - Remote Code Execution

26 Květen, 2026 - 02:00
Grav CMS 2.0.0-beta.2 - Remote Code Execution

[webapps] Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service

26 Květen, 2026 - 02:00
Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service

[hardware] D-Link DSL2600U - 'rom-0' Admin Password Disclosure

26 Květen, 2026 - 02:00
D-Link DSL2600U - 'rom-0' Admin Password Disclosure

[webapps] Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover

26 Květen, 2026 - 02:00
Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover

[webapps] cPanel - CRLF Injection

26 Květen, 2026 - 02:00
cPanel - CRLF Injection

[local] Linux Kernel 6.8 - Local Privilege Escalation

26 Květen, 2026 - 02:00
Linux Kernel 6.8 - Local Privilege Escalation

[webapps] Cockpit 359 - RCE

21 Květen, 2026 - 02:00
Cockpit 359 - RCE

[webapps] BookStack 25.12.1 - Denial of Service

21 Květen, 2026 - 02:00
BookStack 25.12.1 - Denial of Service

[local] Lenovo LegionSpace 1.7.11.2 - 'DAService' Unquoted Service Path

21 Květen, 2026 - 02:00
Lenovo LegionSpace 1.7.11.2 - 'DAService' Unquoted Service Path

[webapps] solaredge - (CSRF-OOB-Injection)

21 Květen, 2026 - 02:00
solaredge - (CSRF-OOB-Injection)