June 15, 2023phpFK 8.0 Cross Site Scripting

phpFK version 8.0 suffers from a cross site scripting vulnerability.

June 15, 2023PyLoad 0.5.0 Remote Code Execution

PyLoad version 0.5.0 suffers from an unauthenticated remote code execution vulnerability.

June 15, 2023projectSend r1605 CSV Injection

projectSend version r1605 suffers from a CSV injection vulnerability.

June 15, 2023projectSend r1605 Cross Site Scripting

projectSend version r1605 suffers from a persistent cross site scripting vulnerability.

June 15, 2023Rest-Cafe And Restaurant Website CMS 2.0.0 Insecure Settings

Rest-Cafe and Restaurant Website CMS version 2.0.0 appears to leave default credentials installed after installation.

June 15, 2023QUICKAD CMS 7.3 Cross Site Request Forgery

QUICKAD CMS version 7.3 suffers from a cross site request forgery vulnerability.

June 14, 2023Online Examination System Project 1.0 Cross Site Request Forgery

Online Examination System Project version 1.0 suffers from a cross site request forgery vulnerability.

June 14, 2023Teachers Record Management System 1.0 Validation Bypass

Teachers Record Management System version 1.0 suffers from file upload validation bypass vulnerability.

June 14, 2023Sales Tracker Management System 1.0 HTML Injection

Sales Tracker Management System version 1.0 suffers from an html injection vulnerability.

June 14, 2023Symmetricom SyncServer Unauthenticated Remote Command Execution

This Metasploit module exploits an unauthenticated command injection vulnerability in /controller/ping.php in Symmetricom SyncServer. The S100 through S350 (End of Life) models should be vulnerable to unauthenticated exploitation due to a session handling

Archives
Categories
  • All Exploits 4131
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow