July 11, 2023Microsoft 365 MSO 2306 Build 16.0.16529.20100 Remote Code Execution

Microsoft Outlook suffers from a remote code execution via a maliciously crafted word file.

July 11, 2023Mastery LMS 1.2 Cross Site Scripting

Mastery LMS version 1.2 suffers from a cross site scripting vulnerability.

July 11, 2023Academy LMS 5.15 Cross Site Scripting

Academy LMS version 5.15 suffers from a cross site scripting vulnerability.

July 7, 2023Apache RocketMQ 5.1.0 Arbitrary Code Injection

RocketMQ versions 5.1.0 and below are vulnerable to arbitrary code injection. Broker component of RocketMQ is leaked on the extranet and lack permission verification. An attacker can exploit this vulnerability by using the update configuration function to

July 7, 2023Piwigo 13.7.0 Cross Site Scripting

Piwigo version 13.7.0 suffers from a persistent cross site scripting vulnerability.

July 7, 2023Lost And Found Information System 1.0 SQL Injection

Lost and Found Information System version 1.0 suffers from a remote SQL injection vulnerability.

July 7, 2023Gila CMS 1.10.9 Remote Code Execution

Gila CMS version 1.10.9 suffers from a remote code execution vulnerability.

July 7, 2023DANGEROUS MAILER-CLONED 2.0 Information Disclosure

DANGEROUS MAILER-CLONED version 2.0 suffers from an information leakage vulnerability.

July 7, 2023DaillyTools Remote Command Execution

DaillyTools suffers from a remote command execution vulnerability.

July 7, 2023CakePHP Test Suite 2.7.0 Cross Site Scripting

CakePHP Test Suite version 2.7.0 suffers from a cross site scripting vulnerability.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow