August 10, 2022Sophos XG115w Firewall 17.0.10 MR-10 Authentication Bypass

Sophos XG115w Firewall version 17.0.10 MR-10 suffers from an authentication bypass vulnerability.

August 9, 2022Feehi CMS 2.1.1 Cross Site Scripting

Feehi CMS version 2.1.1 suffers from a persistent cross site scripting vulnerability.

August 9, 2022Matrimonial PHP Script 1.0 SQL Injection

Matrimonial PHP Script version 1.0 suffers from a remote SQL injection vulnerability.

August 9, 2022PAN-OS 10.0 Remote Code Execution

PAN-OS version 10.0 suffers from a remote code execution vulnerability.

August 9, 2022Backdoor.Win32.Guptachar.20 MVID-2022-0631 Insecure Credential Storage

Backdoor.Win32.Guptachar.20 malware suffers from an insecure credential storage vulnerability.

August 9, 2022Prestashop Blockwishlist 2.1.0 SQL Injection

Prestashop Blockwishlist module version 2.1.0 suffers from a remote SQL injection vulnerability.

August 8, 2022Nortek Linear eMerge E3-Series Command Injection

Nortek Linear eMerge E3-Series version 0.32-09c suffers from a blind OS command injection vulnerability.

August 8, 2022Nortek Linear eMerge E3-Series Credential Disclosure

Nortek Linear eMerge E3-Series versions 0.32-07p, 0.32-07e, 0.32-07p, 0.32-08f, and 0.32-09c suffer from an administrative credential disclosure vulnerability.

August 8, 2022Thingsboard 3.3.1 Cross Site Scripting

Thingsboard version 3.3.1 suffers from multiple persistent cross site scripting vulnerabilities.

August 8, 2022ManageEngine ADAudit Plus Path Traversal / XML Injection

This Metasploit module exploits CVE-2022-28219, which is a pair of vulnerabilities in ManageEngine ADAudit Plus versions before build 7060. They include a path traversal in the /cewolf endpoint along with a blind XML external entity injection vulnerabilit

Archives
Categories
  • All Exploits 4095
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow