July 4, 2023ApPHP MicroCMS 1.0.1 Host Header Injection

ApPHP MicroCMS version 1.0.1 re-embeds arbitrary content from the client into web pages.

July 4, 2023Arlisistem 3.0 SQL Injection

Arlisistem version 3.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

July 4, 2023ArticleSetup Script CMS 1.02 Cross Site Request Forgery

ArticleSetup Script CMS version 1.02 suffers from a cross site request forgery vulnerability.

July 4, 2023Allhandsmarketing LMS 2.0 Insecure Settings

Allhandsmarketing LMS version 2.0 appears to leave default credentials installed after installation.

July 3, 2023TP-Link TL-WR940N 4 Buffer Overflow

TP-Link TL-WR940N version 4 suffers from a buffer overflow vulnerability.

July 3, 2023Anuranan SBAdmin 2.0 SQL Injection

Anuranan SBAdmin version 2.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

July 3, 2023XEL CMS 1.1 Cross Site Request Forgery

XEL CMS version 1.1 suffers from a cross site request forgery vulnerability.

July 3, 2023FuguHub 8.1 Remote Code Execution

FuguHub version 8.1 suffers from a remote code execution vulnerability.

July 3, 2023PodcastGenerator 3.2.9 Server-Side Request Forgery

PodcastGenerator version 3.2.9 suffers from a blind server-side request forgery vulnerability via XML injection.

July 3, 2023Prestashop 8.0.4 Cross Site Scripting

Prestashop version 8.0.4 suffers from a cross site scripting vulnerability.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow