May 15, 2023Screen SFT DAB 600/C Unauthenticated Information Disclosure

Screen SFT DAB 600/C is affected by an information disclosure vulnerability due to improper access control enforcement. An unauthenticated remote attacker can exploit this via a specially crafted request to gain access to sensitive information including u

May 15, 2023Screen SFT DAB 600/C Authentication Bypass / Reset Board Config

Screen SFT DAB 600/C suffers from a weak session management that can allow an attacker on the same network to bypass these controls by reusing the same IP address assigned to the victim user (NAT) and exploit crucial operations on the device itself. By ab

May 15, 2023Screen SFT DAB 600/C Authentication Bypass / Admin Password Change

Screen SFT DAB 600/C exploit that circumvents the control and requirement of the admin's old password and directly changes the password.

May 15, 2023Screen SFT DAB 600/C Authentication Bypass / Erase Account

Screen SFT DAB 600/C suffers from a weak session management that can allow an attacker on the same network to bypass these controls by reusing the same IP address assigned to the victim user (NAT) and exploit crucial operations on the device itself. By ab

May 15, 2023Screen SFT DAB 600/C Authentication Bypass / Password Change

Screen SFT DAB 600/C suffers from a weak session management that can allow an attacker on the same network to bypass these controls by reusing the same IP address assigned to the victim user (NAT) and exploit crucial operations on the device itself. By ab

May 15, 2023Screen SFT DAB 600/C Authentication Bypass / Account Creation

Screen SFT DAB 600/C suffers from a weak session management that can allow an attacker on the same network to bypass these controls by reusing the same IP address assigned to the victim user (NAT) and exploit crucial operations on the device itself. By ab

May 15, 2023RockMongo 1.1.7 Cross Site Scripting

RockMongo version 1.1.7 suffers from a persistent cross site scripting vulnerability.

May 15, 2023TinyWebGallery 2.5 Cross Site Scripting

TinyWebGallery version 2.5 suffers from a persistent cross site scripting vulnerability.

May 15, 2023FLEX Denial Of Service

FLEX versions prior to 1085 Web 1.6.0 suffer from a denial of service vulnerability.

May 12, 2023Advantech EKI-15XX Series Command Injection / Buffer Overflow

Advantech EKI-1524-CE series, EKI-1522 series, and EKI-1521 series suffer from command injection and buffer overflow vulnerabilities.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow