March 30, 2023WordPress WP All Import 3.6.7 Remote Code Execution

WordPress WP All Import plugin versions 3.6.7 and below remote code execution exploit.

March 30, 2023Outline 1.6.0 Unquoted Service Path

Outline version 1.6.0 suffers from an unquoted service path vulnerability.

March 30, 2023Human Resource Management System 1.0 SQL Injection

Human Resource Management System version 1.0 suffers from an unauthenticated remote SQL injection vulnerability.

March 28, 2023SolarWinds Information Service (SWIS) Remote Command Execution

The SolarWinds Information Service (SWIS) is vulnerable to remote code execution by way of a crafted message received through the AMQP message queue. A malicious user that can authenticate to the AMQP service can publish such a crafted message whose body

March 28, 2023rukovoditel 3.2.1 Cross Site Scripting

rukovoditel version 3.2.1 suffers from a cross site scripting vulnerability.

March 28, 2023iBooking 1.0.8 Remote Shell Upload

iBooking version 1.0.8 suffers from a remote shell upload vulnerability.

March 28, 2023ReQlogic 11.3 Cross Site Scripting

ReQlogic version 11.3 suffers from a cross site scripting vulnerability.

March 28, 2023Optergy Proton And Enterprise BMS 2.0.3a Command Injection

This Metasploit module exploits an undocumented backdoor vulnerability in the Optergy Proton and Enterprise Building Management System (BMS) applications. Versions 2.0.3a and below are vulnerable. Attackers can exploit this issue by directly navigating to

March 28, 2023Hashicorp Consul 1.0 Remote Command Execution

Hashicorp Consul version 1.0 suffers from a remote command execution vulnerability.

March 28, 2023Moodle LMS 4.0 Cross Site Scripting

Moodle LMS version 4.0 suffers from a cross site scripting vulnerability.

Archives
Categories
  • All Exploits 4122
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow