August 25, 2023GetSimple CMS 3.3.2 Cross Site Scripting

GetSimple CMS version 3.3.2 suffers from a cross site scripting vulnerability.

August 25, 2023G And G Corporate CMS 1.0 SQL Injection

G and G Corporate CMS version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

August 24, 2023Chamilo 1.11.18 Command Injection

This Metasploit module exploits an unauthenticated remote command execution vulnerability that affects Chamilo versions 1.11.18 and below. Due to a functionality called Chamilo Rapid to easily convert PowerPoint slides to courses on Chamilo, it is possibl

August 24, 2023GEN Security+ 4.0 Cross Site Scripting

GEN Security+ version 4.0 suffers from a cross site scripting vulnerability.

August 24, 2023Geeklog 2.1.0b1 SQL Injection

Geeklog version 2.1.0b1 suffers from a remote SQL injection vulnerability.

August 24, 2023GraceHRM 1.0.3 Directory Traversal

GraceHRM version 1.0.3 suffers from a directory traversal vulnerability.

August 24, 2023User Registration And Login And User Management System 3.0 Cross Site Scripting

User Registration and Login and User Management System version 3.0 suffers from a persistent cross site scripting vulnerability.

August 24, 2023User Registration And Login And User Management System 3.0 SQL Injection

User Registration and Login and User Management System version 3.0 suffers from a remote SQL injection vulnerability.

August 24, 2023Uvdesk 1.1.4 Cross Site Scripting

Uvdesk version 1.1.4 suffers from a persistent cross site scripting vulnerability.

August 24, 2023FlightPath LMS 5.0-rc2 Insecure Direct Object Reference

FlightPath LMS version 5.0-rc2 suffers from an insecure direct object reference vulnerability.

Archives
Categories
  • All Exploits 4105
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow