May 10, 2023VOTAB Voting Quiz PHP Script 1.0 SQL Injection

VOTAB Voting Quiz PHP Script version 1.0 suffers from a remote SQL injection vulnerability.

May 10, 2023VOTAB Voting Quiz PHP Script 1.0 Cross Site Scripting

VOTAB Voting Quiz PHP Script version 1.0 suffers from a cross site scripting vulnerability.

May 10, 2023Soft-o Free Password Manager 1.1.20 DLL Hijacking

Soft-o Free Password Manager version 1.1.20 suffers from a dll hijacking vulnerability.

May 9, 2023ManageEngine ADAudit Plus Remote Code Execution

This Metasploit module exploits security issues in ManageEngine ADAudit Plus versions prior to 7006 that allow authenticated users to execute arbitrary code by creating a custom alert profile and leveraging its custom alert script component. The module fi

May 9, 2023Spryker Commerce OS 1.0 SQL Injection

An SQL injection vulnerability affecting Spryker-based webshops was discovered in the order history search form. It can be exploited by authenticated attackers in order to retrieve information from the database (e.g. customer and administrator login infor

May 9, 2023HammerSpace GDE / GFS 4.6.6-324 Authentication Bypass

This utility generates the TOTP passcode used to sign in as the support service account user for HammerSpace GFS default installations. Both the OVA and ISO are affected. Versions 4.6.6-324 and below with a default installation are affected.

May 8, 2023FICO Origination Manager Decision Module 4.8.1 XSS / Session Hijacking

Multiple persistent cross site scripting vulnerabilities in FICO Origination Manager Decision Module version 4.8.1 allow an attacker to execute code in the context of the victim's browser using a crafted payload. Additionally, an attacker with initial acc

May 8, 2023BlogMagz CMS 1.0 Cross Site Scripting

BlogMagz CMS version 1.0 suffers from a cross site scripting vulnerability.

May 8, 2023Found Information System 1.0 SQL Injection

Found Information System version 1.0 suffers from a remote SQL injection vulnerability.

May 8, 2023Rollout::UI 0.5 Cross Site Scripting

Rollout::UI version 0.5 suffers from a cross site scripting vulnerability.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow