August 8, 2023Data Driven CMS 0.4.1 Database Disclosure

Data Driven CMS version 0.4.1 suffers from a database disclosure vulnerability.

August 8, 2023GNOME Files 43.4 Privilege Escalation

GNOME Files version 43.4 (nautilus) on Fedora 37 will extract zip archives with setuid files for other user identifiers that can be leveraged to escalate privileges.

August 8, 2023Varient News Magazine Script 2.2 Insecure Settings

Varient News Magazine Script version 2.2 appears to leave default credentials installed after installation.

August 8, 2023Video Whisper Conference 1.01 Cross Site Scripting

Video Whisper Conference version 1.01 suffers from a cross site scripting vulnerability.

August 8, 2023Videoflix CMS 1.3 Insecure Settings

Videoflix CMS version 1.3 appears to leave default credentials installed after installation.

August 7, 2023Social-Commerce 3.1.6 Cross Site Scripting

Social-Commerce version 3.1.6 suffers from a cross site scripting vulnerability.

August 7, 2023mooSocial 3.1.8 Cross Site Scripting

mooSocial version 3.1.8 suffers from a cross site scripting vulnerability.

August 7, 2023Adlisting Classified Ads 2.14.0 Information Disclosure

Adlisting Classified Ads version 2.14.0 suffers from an information leakage vulnerability.

August 7, 2023Datalife Engine 10 SQL Injection

Datalife Engine version 10 suffers from a remote SQL injection vulnerability.

August 7, 2023Database Compilation 1.2 Cross Site Scripting

Database Compilation CMS version 1.2 suffers from a cross site scripting vulnerability.

Archives
Categories
  • All Exploits 4105
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow