May 25, 20232023 Online Course Registration 1.0 SQL Injection

2023 Online Course Registration version 1.0 suffers from a remote SQL Injection vulnerability that allows for authentication bypass.

May 25, 2023WFTPD 3.25 Credential Disclosure

WFTPD version 3.25 leaves credentials accessible in wftpd.ini.

May 25, 2023Service Provider Management System 1.0 SQL Injection

Service Provider Management System version 1.0 suffers from a remote SQL injection vulnerability.

May 24, 2023FusionInvoice 2023-1.0 Cross Site Scripting

FusionInvoice version 2023-1.0 suffers from a persistent cross site scripting vulnerability.

May 24, 2023GetSimple CMS 3.3.16 Shell Upload

GetSimple CMS version 3.3.16 suffers from a remote shell upload vulnerability.

May 24, 2023thrsrossi Millhouse-Project 1.414 Shell Upload

thrsrossi Millhouse-Project version 1.414 suffers from a remote shell upload vulnerability.

May 24, 2023Roxy WI 6.1.0.0 Remote Command Execution

Roxy WI version 6.1.0.0 remote command execution exploit. This is a variant of the original disclosure of remote command execution in this version by Nuri Cilengir in April of 2023.

May 24, 2023eScan Management Console 14.0.1400.2281 SQL Injection

eScan Management Console version 14.0.1400.2281 suffers from a remote SQL injection vulnerability.

May 24, 2023Webkul Qloapps 1.5.2 Cross Site Scripting

Webkul Qloapps version 1.5.2 suffers from a cross site scripting vulnerability.

May 24, 2023eScan Management Console 14.0.1400.2281 Cross Site Scripting

eScan Management Console version 14.0.1400.2281 suffers from a cross site scripting vulnerability.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow