June 19, 2023SystemK NVR 504/508/516 Command Injection

SystemK NVR 504/508/516 version 2.3.5SK.30084998 suffer from a command injection vulnerability.

June 19, 2023elearning-SES 1.0 Sql Injection

elearning-SES version 1.0 suffers from a remote SQL injection vulnerability.

June 19, 2023RentEquip Multipurpose Rental 1.0 Cross Site Scripting

RentEquip Multipurpose Rental version 1.0 suffers from a cross site scripting vulnerability.

June 19, 2023Polycom BToE Connector 4.4.0.0 Buffer Overflow / Man-In-The-Middle

Polycom BToE Connector version 4.4.0.0 suffers from remote buffer overflow and man-in-the-middle vulnerabilities.

June 19, 2023Multirent Multivendor Equipment Rental 1.0 Cross Site Scripting

Multirent Multivendor Equipment Rental version 1.0 suffers from a cross site scripting vulnerability.

June 19, 2023WordPress Google Maps 9.0.17 Backup Disclosure

WordPress Google Maps plugin version 9.0.17 appears to leave backups in a world accessible directory under the document root.

June 19, 2023WordPress File Manager Pro 8.3.1 Backup Disclosure

WordPress File Manager Pro plugin version 8.3.1 appears to leave backups in a world accessible directory under the document root.

June 19, 2023WordPress Envato 2.0.7 Backup Disclosure

WordPress Envato plugin version 2.0.7 appears to leave backups in a world accessible directory under the document root.

June 19, 2023Evento Multivendor Event Ticket Booking 1.0 Cross Site Scripting

Evento Multivendor Event Ticket Booking version 1.0 suffers from a cross site scripting vulnerability.

June 19, 2023WordPress Duplicator 4.0.2 Backup Disclosure

WordPress Duplicator plugin versions 3.8.0.2 through 4.0.2 appear to leave backups in a world accessible directory under the document root.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow