January 13, 2023WordPress Profile Builder 3.0.5 SQL Injection

WordPress Profile Builder plugin version 3.0.5 suffers from a remote SQL injection vulnerability.

January 13, 2023Global Education And Technoworld 4.1 Backup Disclosure

Global Education and Technoworld version 4.1 suffers from an unauthorized backup disclosure vulnerability.

January 13, 2023Laravel 9.47.0 Information Disclosure

Laravel versions 1.0 to 9.47.0 suffer from database disclosure and information leakage vulnerabilities.

January 12, 20232ad Guestbook 2.0 Database Disclosure

2ad Guestbook version 2.0 suffers from a database disclosure vulnerability.

January 12, 2023Gold Filled CRM 2.0 Arbitrary File Upload

Gold Filled CRM version 2.0 suffers from an unauthenticated arbitrary file upload vulnerability.

January 12, 2023eCart Web 5.0.0 Cross Site Scripting

eCart Web version 5.0.0 suffers from a cross site scripting vulnerability.

January 12, 2023Foloosi Shopping 5.5.7 Insecure Settings

Foloosi Shopping version 5.5.7 appears to leave a default administrative account in place post installation.

January 12, 2023Flex 5.22 Insecure Settings

Flex version 5.2.2 appears to leave a default administrative account in place post installation.

January 12, 2023ChiKoi 1.0 SQL Injection

ChiKoi version 1.0 suffers from a remote SQL injection vulnerability.

January 12, 2023Deprixa Pro 7.5 Insecure Settings

Deprixa Pro version 7.5 appears to leave a default administrative account in place post installation.

Archives
Categories
  • All Exploits 4105
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow