July 31, 2023Copyparty 1.8.2 Directory Traversal

Copyparty version 1.8.2 suffers from a directory traversal vulnerability.

July 31, 2023Copyparty 1.8.6 Cross Site Scripting

Copyparty version 1.8.6 suffers from a cross site scripting vulnerability.

July 31, 2023CMSninesol 1.0 Cross Site Scripting

CMSninesol version 1.0 suffers from a cross site scripting vulnerability.

July 31, 2023CMSdosma 5.0 Insecure Direct Object Reference

CMSdosma version 5.0 suffers from an insecure direct object reference vulnerability.

July 31, 2023WordPress AN_Gradebook 5.0.1 SQL Injection

WordPress AN_Gradebook plugin version 5.0.1 suffers from a remote SQL injection vulnerability.

July 31, 2023CMSJerusalem Weather Forecast 1.3 Directory Traversal

CMSJerusalem Weather Forecast version 1.3 suffers from a directory traversal vulnerability.

July 31, 2023October CMS 3.4.4 Cross Site Scripting

October CMS version 3.4.4 suffers from a persistent cross site scripting vulnerability.

July 31, 2023Yourdoctor CMS 1.4 Insecure Direct Object Reference

Yourdoctor CMS version 1.4 suffers from an insecure direct object reference vulnerability.

July 31, 2023Keeper Security Desktop 16.10.2 / Browser Extension 16.5.4 Password Dumper

An issue was discovered in Keeper Password Manager for Desktop version 16.10.2, and the KeeperFill Browser Extensions version 16.5.4, that allows local attackers to gain sensitive information via plaintext password storage in memory after the user is alre

July 31, 2023Buzzy News Viral Lists Polls And Videos 2.5.2 Insecure Settings

Buzzy News Viral Lists Polls and Videos version 2.5.2 appears to leave default credentials installed after installation.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow