FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayExploit-DB Updates

[webapps] atrocore 1.5.25 User interaction - Unauthenticated File upload - RCE

atrocore 1.5.25 User interaction - Unauthenticated File upload - RCE
  • April 6th 2023 at 00:00

[remote] TitanFTP 2.0.1.2102 - Path traversal to Remote Code Execution (RCE)

TitanFTP 2.0.1.2102 - Path traversal to Remote Code Execution (RCE)
  • April 6th 2023 at 00:00

[local] GNU screen v4.9.0 - Privilege Escalation

GNU screen v4.9.0 - Privilege Escalation
  • April 5th 2023 at 00:00

[remote] D-Link DIR-846 - Remote Command Execution (RCE) vulnerability

D-Link DIR-846 - Remote Command Execution (RCE) vulnerability
  • April 5th 2023 at 00:00

[webapps] PhotoShow 3.0 - Remote Code Execution

PhotoShow 3.0 - Remote Code Execution
  • April 5th 2023 at 00:00

[webapps] Answerdev 1.0.3 - Account Takeover

Answerdev 1.0.3 - Account Takeover
  • April 5th 2023 at 00:00

[webapps] Online Eyewear Shop 1.0 - SQL Injection (Unauthenticated)

Online Eyewear Shop 1.0 - SQL Injection (Unauthenticated)
  • April 5th 2023 at 00:00

[remote] Binwalk v2.3.2 - Remote Command Execution (RCE)

Binwalk v2.3.2 - Remote Command Execution (RCE)
  • April 5th 2023 at 00:00

[remote] Kardex Mlog MCC 5.7.12 - RCE (Remote Code Execution)

Kardex Mlog MCC 5.7.12 - RCE (Remote Code Execution)
  • April 5th 2023 at 00:00

[webapps] itech TrainSmart r1044 - SQL injection

itech TrainSmart r1044 - SQL injection
  • April 5th 2023 at 00:00

[webapps] ImageMagick 7.1.0-49 - Arbitrary File Read

ImageMagick 7.1.0-49 - Arbitrary File Read
  • April 5th 2023 at 00:00

[webapps] projectSend r1605 - Remote Code Exectution RCE

projectSend r1605 - Remote Code Exectution RCE
  • April 5th 2023 at 00:00

[webapps] Liferay Portal 6.2.5 - Insecure Permissions

Liferay Portal 6.2.5 - Insecure Permissions
  • April 5th 2023 at 00:00

[remote] SOUND4 LinkAndShare Transmitter 1.1.2 - Format String Stack Buffer Overflow

SOUND4 LinkAndShare Transmitter 1.1.2 - Format String Stack Buffer Overflow
  • April 5th 2023 at 00:00

[dos] XWorm Trojan 2.1 - Null Pointer Derefernce DoS

XWorm Trojan 2.1 - Null Pointer Derefernce DoS
  • April 5th 2023 at 00:00

[webapps] Responsive FileManager 9.9.5 - Remote Code Execution (RCE)

Responsive FileManager 9.9.5 - Remote Code Execution (RCE)
  • April 5th 2023 at 00:00

[webapps] BTCPay Server v1.7.4 - HTML Injection.

BTCPay Server v1.7.4 - HTML Injection.
  • April 5th 2023 at 00:00

[webapps] bgERP v22.31 (Orlovets) - Cookie Session vulnerability & Cross-Site Scripting (XSS)

bgERP v22.31 (Orlovets) - Cookie Session vulnerability & Cross-Site Scripting (XSS)
  • April 5th 2023 at 00:00

[webapps] Provide Server v.14.4 XSS - CSRF & Remote Code Execution (RCE)

Provide Server v.14.4 XSS - CSRF & Remote Code Execution (RCE)
  • April 5th 2023 at 00:00

[webapps] zstore 6.6.0 - Cross-Site Scripting (XSS)

zstore 6.6.0 - Cross-Site Scripting (XSS)
  • April 5th 2023 at 00:00

[dos] Apache Tomcat 10.1 - Denial Of Service

Apache Tomcat 10.1 - Denial Of Service
  • April 5th 2023 at 00:00

[webapps] Control Web Panel 7 (CWP7) v0.9.8.1147 - Remote Code Execution (RCE)

Control Web Panel 7 (CWP7) v0.9.8.1147 - Remote Code Execution (RCE)
  • April 5th 2023 at 00:00

[remote] PostgreSQL 9.6.1 - Remote Code Execution (RCE) (Authenticated)

PostgreSQL 9.6.1 - Remote Code Execution (RCE) (Authenticated)
  • April 5th 2023 at 00:00

[dos] ImageMagick 7.1.0-49 - DoS

ImageMagick 7.1.0-49 - DoS
  • April 5th 2023 at 00:00

[webapps] ERPNext 12.29 - Cross-Site Scripting (XSS)

ERPNext 12.29 - Cross-Site Scripting (XSS)
  • April 5th 2023 at 00:00

[webapps] CKEditor 5 35.4.0 - Cross-Site Scripting (XSS)

CKEditor 5 35.4.0 - Cross-Site Scripting (XSS)
  • April 5th 2023 at 00:00

[webapps] Bus Pass Management System 1.0 - Stored Cross-Site Scripting (XSS)

Bus Pass Management System 1.0 - Stored Cross-Site Scripting (XSS)
  • April 5th 2023 at 00:00

[remote] Dell EMC Networking PC5500 firmware versions 4.1.0.22 and Cisco Sx / SMB - Information Disclosure

Dell EMC Networking PC5500 firmware versions 4.1.0.22 and Cisco Sx / SMB - Information Disclosure
  • April 5th 2023 at 00:00

[webapps] Secure Web Gateway 10.2.11 - Cross-Site Scripting (XSS)

Secure Web Gateway 10.2.11 - Cross-Site Scripting (XSS)
  • April 5th 2023 at 00:00

[webapps] Froxlor 2.0.3 Stable - Remote Code Execution (RCE)

Froxlor 2.0.3 Stable - Remote Code Execution (RCE)
  • April 5th 2023 at 00:00

[webapps] Paid Memberships Pro v2.9.8 (WordPress Plugin) - Unauthenticated SQL Injection

Paid Memberships Pro v2.9.8 (WordPress Plugin) - Unauthenticated SQL Injection
  • April 3rd 2023 at 00:00

[local] Chromacam 4.0.3.0 - PsyFrameGrabberService Unquoted Service Path

Chromacam 4.0.3.0 - PsyFrameGrabberService Unquoted Service Path
  • April 3rd 2023 at 00:00

[webapps] SLIMSV 9.5.2 - Cross-Site Scripting (XSS)

SLIMSV 9.5.2 - Cross-Site Scripting (XSS)
  • April 3rd 2023 at 00:00

[webapps] Zstore 6.5.4 - Reflected Cross-Site Scripting (XSS)

Zstore 6.5.4 - Reflected Cross-Site Scripting (XSS)
  • April 3rd 2023 at 00:00

[webapps] Roxy WI v6.1.0.0 - Unauthenticated Remote Code Execution (RCE)

Roxy WI v6.1.0.0 - Unauthenticated Remote Code Execution (RCE)
  • April 3rd 2023 at 00:00

[webapps] Art Gallery Management System Project v1.0 - SQL Injection (sqli) authenticated

Art Gallery Management System Project v1.0 - SQL Injection (sqli) authenticated
  • April 3rd 2023 at 00:00

[webapps] GLPI 4.0.2 - Unauthenticated Local File Inclusion on Manageentities plugin

GLPI 4.0.2 - Unauthenticated Local File Inclusion on Manageentities plugin
  • April 3rd 2023 at 00:00

[local] HotKey Clipboard 2.1.0.6 - Privilege Escalation Unquoted Service Path

HotKey Clipboard 2.1.0.6 - Privilege Escalation Unquoted Service Path
  • April 3rd 2023 at 00:00

[local] sleuthkit 4.11.1 - Command Injection

sleuthkit 4.11.1 - Command Injection
  • April 3rd 2023 at 00:00

[webapps] ChiKoi v1.0 - SQL Injection

ChiKoi v1.0 - SQL Injection
  • April 3rd 2023 at 00:00

[local] Grand Theft Auto III/Vice City Skin File v1.1 - Buffer Overflow

Grand Theft Auto III/Vice City Skin File v1.1 - Buffer Overflow
  • April 3rd 2023 at 00:00

[local] Windows 11 10.0.22000 - Backup service Privilege Escalation

Windows 11 10.0.22000 - Backup service Privilege Escalation
  • April 3rd 2023 at 00:00

[webapps] Active eCommerce CMS 6.5.0 - Stored Cross-Site Scripting (XSS)

Active eCommerce CMS 6.5.0 - Stored Cross-Site Scripting (XSS)
  • April 3rd 2023 at 00:00

[webapps] GLPI Cartography Plugin v6.0.0 - Unauthenticated Remote Code Execution (RCE)

GLPI Cartography Plugin v6.0.0 - Unauthenticated Remote Code Execution (RCE)
  • April 3rd 2023 at 00:00

[webapps] GLPI Glpiinventory v1.0.1 - Unauthenticated Local File Inclusion

GLPI Glpiinventory v1.0.1 - Unauthenticated Local File Inclusion
  • April 3rd 2023 at 00:00

[local] sudo 1.8.0 to 1.9.12p1 - Privilege Escalation

sudo 1.8.0 to 1.9.12p1 - Privilege Escalation
  • April 3rd 2023 at 00:00

[webapps] GLPI v10.0.2 - SQL Injection (Authentication Depends on Configuration)

GLPI v10.0.2 - SQL Injection (Authentication Depends on Configuration)
  • April 3rd 2023 at 00:00

[webapps] AmazCart CMS 3.4 - Cross-Site-Scripting (XSS)

AmazCart CMS 3.4 - Cross-Site-Scripting (XSS)
  • April 3rd 2023 at 00:00

[webapps] MyBB 1.8.32 - Remote Code Execution (RCE) (Authenticated)

MyBB 1.8.32 - Remote Code Execution (RCE) (Authenticated)
  • April 3rd 2023 at 00:00

[local] Solaris 10 libXm - Buffer overflow Local privilege escalation

Solaris 10 libXm - Buffer overflow Local privilege escalation
  • April 3rd 2023 at 00:00

[webapps] SQL Monitor 12.1.31.893 - Cross-Site Scripting (XSS)

SQL Monitor 12.1.31.893 - Cross-Site Scripting (XSS)
  • April 3rd 2023 at 00:00

[webapps] GLPI Activity v3.1.0 - Authenticated Local File Inclusion on Activity plugin

GLPI Activity v3.1.0 - Authenticated Local File Inclusion on Activity plugin
  • April 3rd 2023 at 00:00

[webapps] Roxy WI v6.1.0.0 - Improper Authentication Control

Roxy WI v6.1.0.0 - Improper Authentication Control
  • April 3rd 2023 at 00:00

[webapps] Roxy WI v6.1.1.0 - Unauthenticated Remote Code Execution (RCE) via ssl_cert Upload

Roxy WI v6.1.1.0 - Unauthenticated Remote Code Execution (RCE) via ssl_cert Upload
  • April 3rd 2023 at 00:00

[webapps] WP-file-manager v6.9 - Unauthenticated Arbitrary File Upload leading to RCE

WP-file-manager v6.9 - Unauthenticated Arbitrary File Upload leading to RCE
  • April 3rd 2023 at 00:00

[webapps] Nacos 2.0.3 - Access Control vulnerability

Nacos 2.0.3 - Access Control vulnerability
  • April 3rd 2023 at 00:00

[webapps] ManageEngin AMP 4.3.0 - File-path-traversal

ManageEngin AMP 4.3.0 - File-path-traversal
  • April 3rd 2023 at 00:00
โŒ