July 21, 2023WordPress Page Builder KingComposer 2.9.5 Open Redirection

WordPress Page Builder KingComposer plugin version 2.9.5 suffers from an open redirection vulnerability.

July 21, 2023WordPress ChurcHope Responsive Themes 4.7.x Directory Traversal

WordPress ChurcHope Responsive Themes version 4.7.x suffers from a directory traversal vulnerability.

July 21, 2023CMS-Bank Mellat Payment Manager 1.0.0 Cross Site Scripting

CMS-Bank Mellat Payment Manager version 1.0.0 suffers from a cross site scripting vulnerability.

July 21, 2023RaidenFTPD 2.4.4005 Buffer Overflow

RaidenFTPD version 2.4.4005 suffers from a buffer overflow vulnerability.

July 21, 2023CMS TSS-EST 1.0.0 SQL Injection

CMS TSS-EST version 1.0.0 from a remote SQL injection vulnerability that allows for authentication bypass.

July 21, 2023Foody Friend 1.0 Arbitrary File Upload / Cross Site Scripting

Foody Friend version 1.0 suffers from an arbitrary file upload vulnerability that can assist in cross site scripting attacks.

July 21, 2023CMS Supported IRF-TH 2.0.6 Cross Site Scripting

CMS Supported IRF-TH version 2.0.6 suffers from a cross site scripting vulnerability.

July 21, 2023Wifi Soft Unibox Administration 3.0 / 3.1 SQL Injection

Wifi Soft Unibox Administration versions 3.0 and 3.1 suffer from a remote SQL injection vulnerability.

July 21, 2023CMS SAUDI SOFTECH 5.0.2 SQL Injection

CMS SAUDI SOFTECH version 5.0.2 suffers from a remote SQL injection vulnerability.

July 21, 2023CMS NEXIN 2.0 Insecure Settings

CMS NEXIN version 2.0 appears to leave default credentials installed after installation.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow