September 5, 2023Internet Radio auna IR-160 SE UIProto DoS / XSS / Missing Authentication

Internet Radio auna IR-160 SE using the UIProto firmware suffers from missing authentication, cross site scripting, and denial of service vulnerabilities.

September 5, 2023AtlasVPN Linux Client 1.0.3 IP Leak

Remote disconnect exploit for AtlasVPN Linux client version 1.0.3 that will allow a remote website to extract a client's real IP address.

September 5, 2023Freefloat FTP Server 1.0 Buffer Overflow

Freefloat FTP Server version 1.0 suffers from a remote buffer overflow vulnerability.

September 5, 2023Kingo ROOT 1.5.8 Unquoted Service Path

Kingo ROOT version 1.5.8 suffers from an unquoted service path vulnerability.

September 5, 2023FileMage Gateway 1.10.9 Local File Inclusion

FileMage Gateway version 1.10.9 suffers from a local file inclusion vulnerability.

September 5, 2023WEBIGniter 28.7.23 Shell Upload

WEBIGniter version 28.7.23 suffers from a remote shell upload vulnerability.

September 5, 2023WEBIGniter 28.7.23 Cross Site Scripting

WEBIGniter version 28.7.23 suffers from a cross site scripting vulnerability.

September 5, 2023DLINK DPH-400SE FRU2.2.15.8 Information Disclosure

DLINK DPH-400SE version FRU2.2.15.8 suffers from an information disclosure vulnerability.

September 5, 2023WordPress WP Statistics 13.1.5 SQL Injection

WordPress WP Statistics plugin version 13.1.5 suffers from a remote SQL injection vulnerability.

September 4, 2023Linux 6.4 Use-After-Free / Race Condition

There is a race between mbind() and VMA-locked page faults in the Linux 6.4 kernel, leading to a use-after-free condition.

Archives
Categories
  • All Exploits 4105
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow