FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayExploit-DB Updates

[webapps] Ecommerse v1.0 - Cross-Site Scripting (XSS)

Ecommerse v1.0 - Cross-Site Scripting (XSS)
  • March 30th 2023 at 00:00

[webapps] ClicShopping v3.402 - Cross-Site Scripting (XSS)

ClicShopping v3.402 - Cross-Site Scripting (XSS)
  • March 30th 2023 at 00:00

[webapps] Virtual Reception v1.0 - Web Server Directory Traversal

Virtual Reception v1.0 - Web Server Directory Traversal
  • March 30th 2023 at 00:00

[webapps] WPForms 1.7.8 - Cross-Site Scripting (XSS)

WPForms 1.7.8 - Cross-Site Scripting (XSS)
  • March 30th 2023 at 00:00

[webapps] Shoplazza 1.1 - Stored Cross-Site Scripting (XSS)

Shoplazza 1.1 - Stored Cross-Site Scripting (XSS)
  • March 30th 2023 at 00:00

[local] CrowdStrike Falcon AGENT 6.44.15806 - Uninstall without Installation Token

CrowdStrike Falcon AGENT 6.44.15806 - Uninstall without Installation Token
  • March 30th 2023 at 00:00

[webapps] Dreamer CMS v4.0.0 - SQL Injection

Dreamer CMS v4.0.0 - SQL Injection
  • March 30th 2023 at 00:00

[webapps] LISTSERV 17 - Insecure Direct Object Reference (IDOR)

LISTSERV 17 - Insecure Direct Object Reference (IDOR)
  • March 30th 2023 at 00:00

[local] Lavasoft web companion 4.1.0.409 - 'DCIservice' Unquoted Service Path

Lavasoft web companion 4.1.0.409 - 'DCIservice' Unquoted Service Path
  • March 30th 2023 at 00:00

[webapps] Eve-ng 5.0.1-13 - Stored Cross-Site Scripting (XSS)

Eve-ng 5.0.1-13 - Stored Cross-Site Scripting (XSS)
  • March 30th 2023 at 00:00

[webapps] 4images 1.9 - Remote Command Execution (RCE)

4images 1.9 - Remote Command Execution (RCE)
  • March 30th 2023 at 00:00

[webapps] Concrete5 CME v9.1.3 - Xpath injection

Concrete5 CME v9.1.3 - Xpath injection
  • March 30th 2023 at 00:00

[dos] Router ZTE-H108NS - Stack Buffer Overflow (DoS)

Router ZTE-H108NS - Stack Buffer Overflow (DoS)
  • March 30th 2023 at 00:00

[remote] Router ZTE-H108NS - Authentication Bypass

Router ZTE-H108NS - Authentication Bypass
  • March 30th 2023 at 00:00

[webapps] LISTSERV 17 - Reflected Cross Site Scripting (XSS)

LISTSERV 17 - Reflected Cross Site Scripting (XSS)
  • March 30th 2023 at 00:00

[webapps] Boa Web Server v0.94.14 - Authentication Bypass

Boa Web Server v0.94.14 - Authentication Bypass
  • March 30th 2023 at 00:00

[webapps] Covenant v0.5 - Remote Code Execution (RCE)

Covenant v0.5 - Remote Code Execution (RCE)
  • March 30th 2023 at 00:00

[webapps] myBB forums 1.8.26 - Stored Cross-Site Scripting (XSS)

myBB forums 1.8.26 - Stored Cross-Site Scripting (XSS)
  • March 30th 2023 at 00:00

[webapps] Device Manager Express 7.8.20002.47752 - Remote Code Execution (RCE)

Device Manager Express 7.8.20002.47752 - Remote Code Execution (RCE)
  • March 30th 2023 at 00:00

[local] Zillya Total Security 3.0.2367.0 - Local Privilege Escalation

Zillya Total Security 3.0.2367.0 - Local Privilege Escalation
  • March 30th 2023 at 00:00

[webapps] Helmet Store Showroom v1.0 - SQL Injection

Helmet Store Showroom v1.0 - SQL Injection
  • March 29th 2023 at 00:00

[remote] Inbit Messenger v4.9.0 - Unauthenticated Remote SEH Overflow

Inbit Messenger v4.9.0 - Unauthenticated Remote SEH Overflow
  • March 29th 2023 at 00:00

[remote] Internet Download Manager v6.41 Build 3 - Remote Code Execution (RCE)

Internet Download Manager v6.41 Build 3 - Remote Code Execution (RCE)
  • March 29th 2023 at 00:00

[webapps] Human Resource Management System 1.0 - SQL Injection (unauthenticated)

Human Resource Management System 1.0 - SQL Injection (unauthenticated)
  • March 29th 2023 at 00:00

[webapps] Uniview NVR301-04S2-P4 - Reflected Cross-Site Scripting (XSS)

Uniview NVR301-04S2-P4 - Reflected Cross-Site Scripting (XSS)
  • March 29th 2023 at 00:00

[webapps] Book Store Management System 1.0.0 - Stored Cross-Site Scripting (XSS)

Book Store Management System 1.0.0 - Stored Cross-Site Scripting (XSS)
  • March 29th 2023 at 00:00

[local] Outline V1.6.0 - Unquoted Service Path

Outline V1.6.0 - Unquoted Service Path
  • March 29th 2023 at 00:00

[remote] DSL-124 Wireless N300 ADSL2+ - Backup File Disclosure

DSL-124 Wireless N300 ADSL2+ - Backup File Disclosure
  • March 29th 2023 at 00:00

[webapps] WP All Import v3.6.7 - Remote Code Execution (RCE) (Authenticated)

WP All Import v3.6.7 - Remote Code Execution (RCE) (Authenticated)
  • March 29th 2023 at 00:00

[webapps] Revenue Collection System v1.0 - Remote Code Execution (RCE)

Revenue Collection System v1.0 - Remote Code Execution (RCE)
  • March 29th 2023 at 00:00

[remote] Inbit Messenger v4.9.0 - Unauthenticated Remote Command Execution (RCE)

Inbit Messenger v4.9.0 - Unauthenticated Remote Command Execution (RCE)
  • March 29th 2023 at 00:00

[webapps] Jetpack 11.4 - Cross Site Scripting (XSS)

Jetpack 11.4 - Cross Site Scripting (XSS)
  • March 28th 2023 at 00:00

[dos] VMware Workstation 15 Pro - Denial of Service

VMware Workstation 15 Pro - Denial of Service
  • March 28th 2023 at 00:00

[webapps] OPSWAT Metadefender Core - Privilege Escalation

OPSWAT Metadefender Core - Privilege Escalation
  • March 28th 2023 at 00:00

[webapps] Label Studio 1.5.0 - Authenticated Server Side Request Forgery (SSRF)

Label Studio 1.5.0 - Authenticated Server Side Request Forgery (SSRF)
  • March 28th 2023 at 00:00

[webapps] ZKTeco ZEM/ZMM 8.88 - Missing Authentication

ZKTeco ZEM/ZMM 8.88 - Missing Authentication
  • March 28th 2023 at 00:00

[remote] Hashicorp Consul v1.0 - Remote Command Execution (RCE)

Hashicorp Consul v1.0 - Remote Command Execution (RCE)
  • March 28th 2023 at 00:00

[webapps] Subrion CMS 4.2.1 - Stored Cross-Site Scripting (XSS)

Subrion CMS 4.2.1 - Stored Cross-Site Scripting (XSS)
  • March 28th 2023 at 00:00

[local] SugarSync 4.1.3 - 'SugarSync Service' Unquoted Service Path

SugarSync 4.1.3 - 'SugarSync Service' Unquoted Service Path
  • March 28th 2023 at 00:00

[dos] Tunnel Interface Driver - Denial of Service

Tunnel Interface Driver - Denial of Service
  • March 28th 2023 at 00:00

[webapps] Senayan Library Management System v9.5.0 - SQL Injection

Senayan Library Management System v9.5.0 - SQL Injection
  • March 28th 2023 at 00:00

[webapps] Pega Platform 8.1.0 - Remote Code Execution (RCE)

Pega Platform 8.1.0 - Remote Code Execution (RCE)
  • March 28th 2023 at 00:00

[local] HDD Health 4.2.0.112 - 'HDDHealth' Unquoted Service Path

HDD Health 4.2.0.112 - 'HDDHealth' Unquoted Service Path
  • March 28th 2023 at 00:00

[webapps] Moodle LMS 4.0 - Cross-Site Scripting (XSS)

Moodle LMS 4.0 - Cross-Site Scripting (XSS)
  • March 28th 2023 at 00:00

[dos] SuperMailer v11.20 - Buffer overflow DoS

SuperMailer v11.20 - Buffer overflow DoS
  • March 28th 2023 at 00:00

[webapps] rukovoditel 3.2.1 - Cross-Site Scripting (XSS)

rukovoditel 3.2.1 - Cross-Site Scripting (XSS)
  • March 28th 2023 at 00:00

[webapps] iBooking v1.0.8 - Arbitrary File Upload

iBooking v1.0.8 - Arbitrary File Upload
  • March 28th 2023 at 00:00

[remote] Tapo C310 RTSP server v1.3.0 - Unauthorised Video Stream Access

Tapo C310 RTSP server v1.3.0 - Unauthorised Video Stream Access
  • March 28th 2023 at 00:00

[webapps] Social-Share-Buttons v2.2.3 - SQL Injection

Social-Share-Buttons v2.2.3 - SQL Injection
  • March 28th 2023 at 00:00

[remote] X-Skipper-Proxy v0.13.237 - Server Side Request Forgery (SSRF)

X-Skipper-Proxy v0.13.237 - Server Side Request Forgery (SSRF)
  • March 28th 2023 at 00:00

[webapps] Online shopping system advanced 1.0 - Multiple Vulnerabilities

Online shopping system advanced 1.0 - Multiple Vulnerabilities
  • March 28th 2023 at 00:00

[webapps] Beauty-salon v1.0 - Remote Code Execution (RCE)

Beauty-salon v1.0 - Remote Code Execution (RCE)
  • March 28th 2023 at 00:00

[webapps] ReQlogic v11.3 - Reflected Cross-Site Scripting (XSS)

ReQlogic v11.3 - Reflected Cross-Site Scripting (XSS)
  • March 28th 2023 at 00:00

[webapps] WebTareas 2.4 - Reflected XSS (Unauthorised)

WebTareas 2.4 - Reflected XSS (Unauthorised)
  • March 27th 2023 at 00:00

[local] AVS Audio Converter 10.3 - Stack Overflow (SEH)

AVS Audio Converter 10.3 - Stack Overflow (SEH)
  • March 27th 2023 at 00:00

[webapps] FortiOS, FortiProxy, FortiSwitchManager v7.2.1 - Authentication Bypass

FortiOS, FortiProxy, FortiSwitchManager v7.2.1 - Authentication Bypass
  • March 27th 2023 at 00:00

[webapps] Webgrind 1.1 - Reflected Cross-Site Scripting (XSS) & Remote Command Execution (RCE)

Webgrind 1.1 - Reflected Cross-Site Scripting (XSS) & Remote Command Execution (RCE)
  • March 27th 2023 at 00:00

[local] Tftpd32_SE 4.60 - 'Tftpd32_svc' Unquoted Service Path

Tftpd32_SE 4.60 - 'Tftpd32_svc' Unquoted Service Path
  • March 27th 2023 at 00:00
โŒ