August 10, 2023Discussion On Kontackt 1.18 Cross Site Scripting

Discussion On Kontackt The Exclusive PHP Social Network Platform version 1.18 suffers from a cross site scripting vulnerability.

August 10, 2023Digisha CMS 1.2.7 SQL Injection

Digisha CMS version 1.2.7 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

August 10, 2023DigaSell Digital Store PHP Script 1.0.0 SQL Injection

DigaSell Digital Store PHP Script version 1.0.0 suffers from a remote blind SQL injection vulnerability.

August 10, 2023Doma CMS 1.0 Cross Site Scripting

Doma CMS version 1.0 suffers from a cross site scripting vulnerability.

August 10, 2023Desenvolvido C3iM CMS 2.0 Cross Site Scripting

Desenvolvido C3iM CMS version 2.0 suffers from a cross site scripting vulnerability.

August 9, 2023EuroTel ETL3100 Transmitter Information Disclosure

The EuroTel ETL3100 TV and FM transmitters suffer from an unauthenticated configuration and log download vulnerability. This will enable the attacker to disclose sensitive information and help him in authentication bypass, privilege escalation and full sy

August 9, 2023EuroTel ETL3100 Transmitter Authorization Bypass / Insecure Direct Object Reference

The EuroTel ETL3100 transmitter is vulnerable to insecure direct object references that occur when the application provides direct access to objects based on user-supplied input. As a result of this vulnerability attackers can bypass authorization and acc

August 9, 2023EuroTel ETL3100 Transmitter Default Credentials

EuroTel ETL3100 transmitters use a weak set of default administrative credentials that can be guessed in remote password attacks and gain full control of the system.

August 9, 2023Metabase Remote Code Execution

Metabase versions before 0.46.6.1 contain a flaw where the secret setup-token is accessible even after the setup process has been completed. With this token a user is able to submit the setup functionality to create a new database. When creating a new dat

August 9, 2023Pyro CMS 3.9 Server-Side Template Injection

Pyro CMS version 3.9 suffers from a server-side template injection vulnerability.

Archives
Categories
  • All Exploits 4105
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow