Exploits (Total: 98598)

    
    
    
CHIYU IoT devices - 'Multiple' Cross-Site Scripting (XSS)
2021-06-13
WordPress Plugin WP Prayer version 1.6.1 - 'prayer_messages' Stored Cross-Site Scripting (XSS) (Authenticated)
2021-06-13
Ubee EVW327 - 'Enable Remote Access' Cross-Site Request Forgery (CSRF)
2021-06-13
ProjeQtOr Project Management 9.1.4 - Remote Code Execution
2021-06-13
LogonTracer 1.2.0 - Remote Code Execution (Unauthenticated)
2021-06-13
DupTerminator 1.4.5639.37199 - Denial of Service (PoC)
2021-06-13
Selenium 3.141.59 - Remote Code Execution (Firefox/geckodriver)
2021-06-13
Trixbox 2.8.0.4 - 'lang' Path Traversal
2021-06-13
Trixbox 2.8.0.4 - 'lang' Remote Code Execution (Unauthenticated)
2021-06-13
WordPress Plugin LifterLMS 4.21.0 - Stored Cross-Site Scripting (XSS)
2021-06-13
PHPFusion 9.03.50 - Remote Code Execution
2021-06-13
Postbird 0.8.4 - Javascript Injection
2021-06-13
Pluck CMS 4.7.13 - File Upload Remote Code Execution (Authenticated)
2021-06-13
ProFTPd 1.3.5 - 'mod_copy' Remote Command Execution (2)
2021-06-13
Codiad 2.8.4 - Remote Code Execution (Authenticated) (3)
2021-06-13
RarmaRadio 2.72.8 - Denial of Service (PoC)
2021-06-13
WordPress Plugin Cookie Law Bar 1.2.1 - 'clb_bar_msg' Stored Cross-Site Scripting (XSS)
2021-06-13
Gadget Works Online Ordering System 1.0 - 'Category' Persistent Cross-Site Scripting (XSS)
2021-06-13
WordPress Plugin ReDi Restaurant Reservation 21.0307 - 'Comment' Stored Cross-Site Scripting (XSS)
2021-06-13
Codiad 2.8.4 - Remote Code Execution (Authenticated) (2)
2021-06-13
Shopizer 2.16.0 - 'Multiple' Cross-Site Scripting (XSS)
2021-06-13
ePowerSvc 6.0.3008.0 - 'ePowerSvc.exe' Unquoted Service Path
2021-06-13
DiskBoss Service 12.2.18 - 'diskbsa.exe' Unquoted Service Path
2021-06-13
iDailyDiary 4.30 - Denial of Service (PoC)
2021-06-13
Schlix CMS 2.2.6-6 - Arbitary File Upload And Directory Traversal Leads To RCE (Authenticated)
2021-06-13
Solaris SunSSH 11.0 x86 - libpam Remote Root (2)
2021-06-13
Microsoft Exchange 2019 - Unauthenticated Email Download (Metasploit)
2021-06-13
WordPress Plugin WP Statistics 13.0.7 - Time-Based Blind SQL Injection (Unauthenticated)
2021-06-13
DELL dbutil_2_3.sys 2.3 - Arbitrary Write to Local Privilege Escalation (LPE)
2021-06-13
Mozilla Firefox 88.0.1 - File Extension Execution of Arbitrary Code
2021-06-13
Spotweb 1.4.9 - DOM Based Cross-Site Scripting (XSS)
2021-06-13
Acer Updater Service 1.2.3500.0 - 'UpdaterService.exe' Unquoted Service Path
2021-06-13
Backup Manager Module 3.0.0.99 - 'IScheduleSvc.exe' Unquoted Service Path
2021-06-13
ASUS HID Access Service 1.0.94.0 - 'AsHidSrv.exe' Unquoted Service Path
2021-06-13
COVID19 Testing Management System 1.0 - 'Admin name' Cross-Site Scripting (XSS)
2021-06-13
COVID19 Testing Management System 1.0 - SQL Injection (Auth Bypass)
2021-06-13
ManageEngine ADSelfService Plus 6.1 - CSV Injection
2021-06-13
In4Suit ERP 3.2.74.1370 - 'txtLoginId' SQL injection
2021-06-13
WebSSH for iOS 14.16.10 - 'mashREPL' Denial of Service (PoC)
2021-06-13
Visual Studio Code 1.47.1 - Denial of Service (PoC)
2021-06-13
WordPress Plugin Stop Spammers 2021.8 - 'log' Reflected Cross-site Scripting (XSS)
2021-06-13
Microsoft Exchange 2019 - Unauthenticated Email Download
2021-06-13
EgavilanMedia PHPCRUD 1.0 - 'First Name' SQL Injection
2021-06-13
Printable Staff ID Card Creator System 1.0 - SQLi & RCE via Arbitrary File Upload
2021-06-13
Subrion CMS 4.2.1 - File Upload Bypass to RCE (Authenticated)
2021-06-13
Advanced Guestbook 2.4.4 - 'Smilies' Persistent Cross-Site Scripting (XSS)
2021-06-13
Billing Management System 2.0 - Union based SQL injection (Authenticated)
2021-06-13
Simple Chatbot Application 1.0 - 'Category' Stored Cross site Scripting
2021-06-13
Microsoft Internet Explorer 8 - 'SetMouseCapture ' Use After Free
2021-06-13
Dental Clinic Appointment Reservation System 1.0 - Cross Site Request Forgery (Add Admin)
2021-06-13
Exploits/page:


Page:
1-4-2 (www01)