May 12, 2023Millhouse-Project 1.414 Cross Site Scripting

Millhouse-Project version 1.414 suffers from a cross site scripting vulnerability.

May 12, 2023Millhouse-Project 1.414 Shell Upload

Millhouse-Project version 1.414 suffers from a remote shell upload vulnerability.

May 11, 2023HouseKit 1.0 Cross Site Scripting

HouseKit version 1.0 suffers from a cross site scripting vulnerability.

May 11, 2023HouseKit 1.0 SQL Injection

HouseKit version 1.0 suffers from a remote SQL injection vulnerability.

May 11, 2023Pentaho Business Server Authentication Bypass / SSTI / Code Execution

Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2, including 8.3.x is vulnerable to an authentication bypass (CVE-2022-43939) and a Server Side Template Injection (SSTI) vulnerability (CVE-2022-43769) that can be chai

May 11, 2023GaanaGawaana 1.0 SQL Injection

GaanaGawaana version 1.0 suffers from a remote SQL injection vulnerability.

May 11, 2023GaanaGawaana 1.0 Cross Site Scripting

GaanaGawaana version 1.0 suffers from a cross site scripting vulnerability.

May 11, 2023Textpattern 4.8.8 Session Token Disclosure

Textpattern version 4.8.8 logs the session token in a GET request where it may end up getting disclosed in logs or via a referer.

May 10, 2023Zyxel Chained Remote Code Execution

This Metasploit module exploits multiple vulnerabilities in the zhttpd binary (/bin/zhttpd) and zcmd binary (/bin/zcmd). It is present on more than 40 Zyxel routers and CPE devices. The remote code execution vulnerability can be exploited by chaining the

May 10, 2023Optoma 1080PSTX Firmware C02 Authentication Bypass

Optoma 1080PSTX with firmware C02 suffers from an authentication bypass vulnerability.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow