April 19, 2022WordPress Popup Maker 1.16.5 Cross Site Scripting

WordPress Popup Maker plugin version 1.16.5 suffers from a persistent cross site scripting vulnerability.

April 19, 2022Responsive Online Blog 1.0 SQL Injection

Responsive Online Blog version 1.0 remote blind boolean-based SQL injection exploit that retrieves usernames and md5 hashes for all site users. Original discovery of the vulnerability is attributed to Eren Simsek.

April 19, 2022Backdoor.Win32.Psychward.03.a Weak Hardcoded Password

Backdoor.Win32.Psychward.03.a malware suffers from a weak hardcoded password vulnerability.

April 19, 2022ManageEngine ADSelfService Plus 6.1 User Enumeration

ManageEngine ADSelfService Plus version 6.1 suffers from a user enumeration vulnerability.

April 19, 20227-Zip 21.07 Code Execution / Privilege Escalation

7-Zip version 21.07 suffers from a code execution vulnerability that allows for local privilege escalation.

April 19, 2022PKP Open Journals System 3.3 Cross Site Scripting

PKP Open Journals System version 3.3 suffers from a cross site scripting vulnerability.

April 19, 2022Backdoor.Win32.Hupigon.haqj Unquoted Service Path

Backdoor.Win32.Hupigon.haqj malware suffers from an unquoted service path vulnerability.

April 19, 2022Trojan.Win32.TScash.c Insecure Permissions

Trojan.Win32.TScash.c malware suffers from an insecure permissions vulnerability.

April 19, 2022WordPress Videos Sync PDF 1.7.4 Cross Site Scripting

WordPress Videos Sync PDF plugin version 1.7.4 suffers from a persistent cross site scripting vulnerability.

April 19, 2022Backdoor.Win32.Loselove Denial Of Service

Backdoor.Win32.Loselove malware suffers from a denial of service vulnerability.

Archives
Categories
  • All Exploits 4095
  • Remote Code Execution
  • SQL Injection
  • Command Injection
  • Local File Inclusion
  • Cross Site Scripting
  • Privilege Escalation
  • Denial Of Service
  • Authentication Bypass
  • Buffer Overflow