March 31, 2023Qubes Mirage Firewall 0.8.3 Denial Of Service

Qubes Mirage Firewall versions 0.8.0 through 0.8.3 suffer from a denial of service vulnerability.

March 31, 2023WordPress WooCommerce 7.1.0 Remote Code Execution

WordPress WooCommerce plugin version 7.1.0 suffers from a remote code execution vulnerability.

March 31, 2023Cacti 1.2.22 Remote Command Execution

Cacti version 1.2.22 suffers from a remote command execution vulnerability.

March 31, 2023Textpattern 4.8.8 Remote Code Execution

Textpattern version 4.8.8 suffers from an authenticated remote code execution vulnerability.

March 31, 2023Bludit 3-14-1 Shell Upload

Bludit version 3-14-1 suffers from a remote shell upload vulnerability.

March 30, 2023Ancillary Function Driver (AFD) For Winsock Privilege Escalation

A vulnerability exists in the Windows Ancillary Function Driver for Winsock (afd.sys) can be leveraged by an attacker to escalate privileges to those of NT AUTHORITY\SYSTEM. Due to a flaw in AfdNotifyRemoveIoCompletion, it is possible to create an arbitra

March 30, 2023Eve-ng 5.0.1-13 Cross Site Scripting

Eve-ng version 5.0.1-13 suffers from a cross site scripting vulnerability.

March 30, 2023WordPress WPForms 1.7.8 Cross Site Scripting

WordPress WPForms plugin version 1.7.8 suffers from a cross site scripting vulnerability.

March 30, 2023Forcepoint (Stonesoft VPN Client) 6.2.0 / 6.8.0 Local Privilege Escalation

Forcepoint (Stonesoft VPN Client) versions 6.2.0 and 6.8.0 suffer from a privilege escalation vulnerability.

March 30, 2023CrowdStrike Falcon Agent 6.44.15806 Uninstall Issue

CrowdStrike Falcon Agent version 6.44.15806 has an uninstall bypass flaw that works without an installation token.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow