July 26, 2023ETSI WEBstore 2023 Cross Site Scripting

ETSI WEBstore 2023 suffers from a persistent cross site scripting vulnerability.

July 26, 2023Journal Management Software 1.2.4 SQL Injection

Journal Management Software version 1.2.4 suffers from a remote SQL injection vulnerability.

July 26, 2023Joomla VirtueMart 2.6.12.2 SQL Injection

Joomla VirtueMart component version 2.6.12.2 suffers from a remote SQL injection vulnerability.

July 26, 2023Joomla JSN Gruve Pro 2.1.0 Directory Traversal

Joomla JSN Gruve Pro component version 2.1.0 suffers from a directory traversal vulnerability.

July 26, 2023Availability Booking Calendar PHP XSS / Arbitrary File Upload

Availability Booking Calendar PHP suffers from cross site scripting and arbitrary file upload vulnerabilities. This was tested in July of 2023 but it is unclear what versions are affected.

July 26, 2023Joomla HotelGuide 1.0 Cross Site Scripting

Joomla HotelGuide component version 1.0 suffers from a cross site scripting vulnerability.

July 26, 2023Joomla Jomestate 4.0 SQL Injection

Joomla Jomestate component version 4.0 suffers from a remote SQL injection vulnerability.

July 26, 2023Joomla Fireboard 1.3 SQL Injection

Joomla Fireboard component version 1.3 suffers from a remote SQL injection vulnerability.

July 25, 2023WordPress File Manager Advanced Shortcode 2.3.2 Remote Code Execution

WordPress File Manager Advanced Shortcode plugin does not adequately prevent uploading files with disallowed MIME types when using the shortcode. This leads to remote code execution in cases where the allowed MIME type list does not include PHP files. In

July 25, 2023WordPress WP Brutal AI Cross Site Scripting

WordPress WP Brutal AI plugin versions prior to 2.0.1 suffer from a cross site scripting vulnerability.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow