June 16, 2023Quicklancer Freelance Marketplace 2.4 Cross Site Scripting

Quicklancer Freelance Marketplace version 2.4 suffers from a cross site scripting vulnerability.

June 16, 2023QuickHomes Real Estate CMS 1.3 Cross Site Scripting

QuickHomes Real Estate CMS version 1.3 suffers from a cross site scripting vulnerability.

June 16, 2023Textpattern CMS 4.8.8 Command Injection

Textpattern CMS version 4.8.8 suffers from a command injection vulnerability.

June 16, 2023WordPress Abandoned Cart Lite For WooCommerce 5.14.2 Authentication Bypass

WordPress Abandoned Cart Lite for WooCommerce plugin versions 5.14.2 and below proof of concept authentication bypass exploit.

June 16, 2023Instagram App 287.0.0.22.85 Denial Of Service

Instagram App version 287.0.0.22.85 suffers from a denial of service vulnerability.

June 16, 2023Quickad Classified Ads CMS 10.4 SQL Injection

Quickad Classified Ads CMS version 10.4 suffers from a remote SQL injection vulnerability.

June 16, 2023WordPress Unyson 2.7.28 Backup Disclosure

WordPress Unyson plugin version 2.7.28 appears to leave backups in a world accessible directory under the document root.

June 16, 2023Online Art Gallery Project 1.0 Arbitrary File Upload

Online Art Gallery Project version 1.0 suffers from an arbitrary file upload vulnerability.

June 15, 2023Purle Devloper Panel 1.0 Insecure Direct Object Reference

Purle Devloper Panel version 1.0 suffers from an insecure direct object reference vulnerability that allows an unauthenticated user to update passwords.

June 15, 2023Ptclab 3.5 Insecure Settings

Ptclab version 3.5 appears to leave default credentials installed after installation.

Archives
Categories
  • All Exploits 4131
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow