October 10, 2023WordPress Sonaar Music 4.7 Cross Site Scripting

WordPress Sonaar Music plugin version 4.7 suffers from a persistent cross site scripting vulnerability.

October 10, 2023Coppermine Gallery 1.6.25 Remote Code Execution

Coppermine Gallery version 1.6.25 remote code execution exploit.

October 10, 2023Minio 2022-07-29T19-40-48Z Path Traversal

Minio version 2022-07-29T19-40-48Z suffers from a path traversal vulnerability.

October 10, 2023WordPress Masterstudy LMS 3.0.17 Account Creation

WordPress Masterstudy LMS plugin version 3.0.17 suffers from an unauthenticated instructor account creation vulnerability.

October 10, 2023Microsoft Windows 11 apds.dll DLL Hijacking

Microsoft Windows 11 apds.dll DLL hijacking exploit.

October 10, 2023GLPI GZIP(Py3) 9.4.5 Remote Code Execution

GLPI GZIP(Py3) version 9.4.5 suffers from a remote code execution vulnerability.

October 9, 2023Kibana Prototype Pollution / Remote Code Execution

Kibana versions prior to 7.6.3 suffer from a prototype pollution bug within the Upgrade Assistant. By setting a new constructor.prototype.sourceURL value you can execute arbitrary code. Code execution is possible through two different ways. Either by send

October 9, 2023eClass Junior 4.0 SQL Injection

eClass Junior version 4.0 suffers from a remote SQL injection vulnerability.

October 9, 2023eClass IP 2.5 SQL Injection

eClass IP version 2.5 suffers from a remote SQL injection vulnerability.

October 9, 2023Chicv Management System Login 4.5.6 Insecure Direct Object Reference

Chicv Management System Login version 4.5.6 suffers from an insecure direct object reference vulnerability.

Archives
Categories
  • All Exploits 4095
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow