Exploits (Total: 98113)

    
    
    
Phone Shop Sales Managements System 1.0 - Insecure Direct Object Reference (IDOR)
2021-06-22
Responsive Tourism Website 3.1 - Remote Code Execution (RCE) (Unauthenticated)
2021-06-22
ASUS DisplayWidget Software 3.4.0.036 - 'ASUSDisplayWidgetService' Unquoted Service Path
2021-06-22
Remote Mouse GUI 3.008 - Local Privilege Escalation
2021-06-21
Customer Relationship Management System (CRM) 1.0 - Remote Code Execution
2021-06-21
Lexmark Printer Software G2 Installation Package 1.8.0.0 - 'LM__bdsvc' Unquoted Service Path
2021-06-21
Simple CRM 3.0 - 'name' Stored Cross site scripting (XSS)
2021-06-21
Simple CRM 3.0 - 'Change user information' Cross-Site Request Forgery (CSRF)
2021-06-21
Websvn 2.6.0 - Remote Code Execution (Unauthenticated)
2021-06-21
iFunbox 4.2 - 'Apple Mobile Device Service' Unquoted Service Path
2021-06-21
Solaris SunSSH 11.0 x86 - libpam Remote Root (3)
2021-06-21
Wise Care 365 5.6.7.568 - 'WiseBootAssistant' Unquoted Service Path
2021-06-21
OpenEMR 5.0.1.7 - 'fileName' Path Traversal (Authenticated)
2021-06-21
Node.JS - 'node-serialize' Remote Code Execution (3)
2021-06-18
Dlink DSL2750U - 'Reboot' Command Injection
2021-06-18
ICE Hrm 29.0.0.OS - 'xml upload' Stored Cross-Site Scripting (XSS)
2021-06-18
ICE Hrm 29.0.0.OS - 'Account Takeover' Cross-Site Request Forgery (CSRF)
2021-06-18
ICE Hrm 29.0.0.OS - 'Account Takeover' Cross-Site Scripting and Session Fixation
2021-06-18
Online Shopping Portal 3.1 - Remote Code Execution (Unauthenticated)
2021-06-17
Workspace ONE Intelligent Hub 20.3.8.0 - 'VMware Hub Health Monitoring Service' Unquoted Service Path
2021-06-17
Zoho ManageEngine ServiceDesk Plus MSP 9.4 - User Enumeration
2021-06-17
VX Search 13.5.28 - 'Multiple' Unquoted Service Path
2021-06-17
Dup Scout 13.5.28 - 'Multiple' Unquoted Service Path
2021-06-17
Disk Savvy 13.6.14 - 'Multiple' Unquoted Service Path
2021-06-17
Sync Breeze 13.6.18 - 'Multiple' Unquoted Service Path
2021-06-17
Unified Office Total Connect Now 1.0 - 'data' SQL Injection
2021-06-17
CKEditor 3 - Server-Side Request Forgery (SSRF)
2021-06-16
Penetration testing Web Storage (User Experience) - Paper (Arabic)
2021-06-16
Teachers Record Management System 1.0 - 'email' Stored Cross-site Scripting (XSS)
2021-06-16
Teachers Record Management System 1.0 - 'Multiple' SQL Injection (Authenticated)
2021-06-16
OpenEMR 5.0.1.3 - '/portal/account/register.php' Authentication Bypass
2021-06-16
Cotonti Siena 0.9.19 - 'maintitle' Stored Cross-Site Scripting
2021-06-16
Disk Sorter Server 13.6.12 - 'Disk Sorter Server' Unquoted Service Path
2021-06-16
DiskPulse 13.6.14 - 'Multiple' Unquoted Service Path
2021-06-16
Polkit 0.105-26 0.117-2 - Local Privilege Escalation
2021-06-15
Brother BRAgent 1.38 - 'WBA_Agent_Client' Unquoted Service Path
2021-06-15
SysGauge 7.9.18 - ' SysGauge Server' Unquoted Service Path
2021-06-15
Client Management System 1.1 - 'Search' SQL Injection
2021-06-15
Client Management System 1.1 - 'username' Stored Cross-Site Scripting (XSS)
2021-06-15
XML External Entity via MP3 File Upload on WordPress - Paper
2021-06-15
Brother BRPrint Auditor - 'Multiple' Unquoted Service Path
2021-06-15
Tftpd64 4.64 - 'Tftpd32_svc' Unquoted Service Path
2021-06-14
Notex the best notes 6.4 - Denial of Service (PoC)
2021-06-14
Post-it 5.0.1 - Denial of Service (PoC)
2021-06-14
Secure Notepad Private Notes 3.0.3 - Denial of Service (PoC)
2021-06-14
WibuKey Runtime 6.51 - 'WkSvW32.exe' Unquoted Service Path
2021-06-14
OpenEMR 5.0.1.3 - 'manage_site_files' Remote Code Execution (Authenticated)
2021-06-14
Spy Emergency 25.0.650 - 'Multiple' Unquoted Service Path
2021-06-14
TextPattern CMS 4.8.7 - Remote Command Execution (Authenticated)
2021-06-14
Small CRM 3.0 - 'Authentication Bypass' SQL Injection
2021-06-14
Exploits/page:


Page:
1-4-2 (www01)