FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayExploit-DB Updates

[webapps] Apache Superset 2.0.0 - Authentication Bypass

Apache Superset 2.0.0 - Authentication Bypass
  • May 23rd 2023 at 00:00

[webapps] Smart School v1.0 - SQL Injection

Smart School v1.0 - SQL Injection
  • May 23rd 2023 at 00:00

[webapps] CiviCRM 5.59.alpha1 - Stored XSS (Cross-Site Scripting)

CiviCRM 5.59.alpha1 - Stored XSS (Cross-Site Scripting)
  • May 23rd 2023 at 00:00

[local] Trend Micro OfficeScan Client 10.0 - ACL Service LPE

Trend Micro OfficeScan Client 10.0 - ACL Service LPE
  • May 23rd 2023 at 00:00

[webapps] Prestashop 8.0.4 - CSV injection

Prestashop 8.0.4 - CSV injection
  • May 23rd 2023 at 00:00

[local] Yank Note v3.52.1 (Electron) - Arbitrary Code Execution

Yank Note v3.52.1 (Electron) - Arbitrary Code Execution
  • May 23rd 2023 at 00:00

[webapps] PnPSCADA v2.x - Unauthenticated PostgreSQL Injection

PnPSCADA v2.x - Unauthenticated PostgreSQL Injection
  • May 23rd 2023 at 00:00

[webapps] Affiliate Me Version 5.0.1 - SQL Injection

Affiliate Me Version 5.0.1 - SQL Injection
  • May 23rd 2023 at 00:00

[webapps] e107 v2.3.2 - Reflected XSS

e107 v2.3.2 - Reflected XSS
  • May 23rd 2023 at 00:00

[webapps] TinyWebGallery v2.5 - Remote Code Execution (RCE)

TinyWebGallery v2.5 - Remote Code Execution (RCE)
  • May 23rd 2023 at 00:00

[webapps] Best POS Management System v1.0 - Unauthenticated Remote Code Execution

Best POS Management System v1.0 - Unauthenticated Remote Code Execution
  • May 23rd 2023 at 00:00

[remote] Optoma 1080PSTX Firmware C02 - Authentication Bypass

Optoma 1080PSTX Firmware C02 - Authentication Bypass
  • May 23rd 2023 at 00:00

[webapps] TinyWebGallery v2.5 - Stored Cross-Site Scripting (XSS)

TinyWebGallery v2.5 - Stored Cross-Site Scripting (XSS)
  • May 13th 2023 at 00:00

[webapps] Job Portal 1.0 - File Upload Restriction Bypass

Job Portal 1.0 - File Upload Restriction Bypass
  • May 13th 2023 at 00:00

[webapps] RockMongo 1.1.7 - Stored Cross-Site Scripting (XSS)

RockMongo 1.1.7 - Stored Cross-Site Scripting (XSS)
  • May 13th 2023 at 00:00

[remote] Epson Stylus SX510W Printer Remote Power Off - Denial of Service

Epson Stylus SX510W Printer Remote Power Off - Denial of Service
  • May 13th 2023 at 00:00

[webapps] Online Clinic Management System 2.2 - Multiple Stored Cross-Site Scripting (XSS)

Online Clinic Management System 2.2 - Multiple Stored Cross-Site Scripting (XSS)
  • May 13th 2023 at 00:00

[webapps] pluck v4.7.18 - Stored Cross-Site Scripting (XSS)

pluck v4.7.18 - Stored Cross-Site Scripting (XSS)
  • May 5th 2023 at 00:00

[webapps] Jedox 2022.4.2 - Remote Code Execution via Directory Traversal

Jedox 2022.4.2 - Remote Code Execution via Directory Traversal
  • May 5th 2023 at 00:00

[webapps] Jedox 2020.2.5 - Remote Code Execution via Executable Groovy-Scripts

Jedox 2020.2.5 - Remote Code Execution via Executable Groovy-Scripts
  • May 5th 2023 at 00:00

[webapps] KodExplorer v4.51.03 - Pwned-Admin File-Inclusion - Remote Code Execution (RCE)

KodExplorer v4.51.03 - Pwned-Admin File-Inclusion - Remote Code Execution (RCE)
  • May 5th 2023 at 00:00

[webapps] Ulicms-2023.1 sniffing-vicuna - Remote Code Execution (RCE)

Ulicms-2023.1 sniffing-vicuna - Remote Code Execution (RCE)
  • May 5th 2023 at 00:00

[local] Codigo Markdown Editor v1.0.1 (Electron) - Remote Code Execution

Codigo Markdown Editor v1.0.1 (Electron) - Remote Code Execution
  • May 5th 2023 at 00:00

[webapps] Wolf CMS 0.8.3.1 - Remote Code Execution (RCE)

Wolf CMS 0.8.3.1 - Remote Code Execution (RCE)
  • May 5th 2023 at 00:00

[webapps] Jedox 2020.2.5 - Disclosure of Database Credentials via Improper Access Controls

Jedox 2020.2.5 - Disclosure of Database Credentials via Improper Access Controls
  • May 5th 2023 at 00:00

[webapps] Jedox 2020.2.5 - Stored Cross-Site Scripting in Log-Module

Jedox 2020.2.5 - Stored Cross-Site Scripting in Log-Module
  • May 5th 2023 at 00:00

[webapps] Online Pizza Ordering System v1.0 - Unauthenticated File Upload

Online Pizza Ordering System v1.0 - Unauthenticated File Upload
  • May 5th 2023 at 00:00

[webapps] Cmaps v8.0 - SQL injection

Cmaps v8.0 - SQL injection
  • May 5th 2023 at 00:00

[webapps] Jedox 2020.2.5 - Remote Code Execution via Configurable Storage Path

Jedox 2020.2.5 - Remote Code Execution via Configurable Storage Path
  • May 5th 2023 at 00:00

[webapps] Ulicms-2023.1 sniffing-vicuna - Stored Cross-Site Scripting (XSS)

Ulicms-2023.1 sniffing-vicuna - Stored Cross-Site Scripting (XSS)
  • May 5th 2023 at 00:00

[webapps] Jedox 2022.4.2 - Disclosure of Database Credentials via Connection Checks

Jedox 2022.4.2 - Disclosure of Database Credentials via Connection Checks
  • May 5th 2023 at 00:00

[webapps] Jedox 2022.4.2 - Code Execution via RPC Interfaces

Jedox 2022.4.2 - Code Execution via RPC Interfaces
  • May 5th 2023 at 00:00

[webapps] EasyPHP Webserver 14.1 - Multiple Vulnerabilities (RCE and Path Traversal)

EasyPHP Webserver 14.1 - Multiple Vulnerabilities (RCE and Path Traversal)
  • May 5th 2023 at 00:00

[webapps] File Thingie 2.5.7 - Remote Code Execution (RCE)

File Thingie 2.5.7 - Remote Code Execution (RCE)
  • May 5th 2023 at 00:00

[webapps] PHPFusion 9.10.30 - Stored Cross-Site Scripting (XSS)

PHPFusion 9.10.30 - Stored Cross-Site Scripting (XSS)
  • May 2nd 2023 at 00:00

[webapps] OpenEMR v7.0.1 - Authentication credentials brute force

OpenEMR v7.0.1 - Authentication credentials brute force
  • May 2nd 2023 at 00:00

[webapps] admidio v4.2.5 - CSV Injection

admidio v4.2.5 - CSV Injection
  • May 2nd 2023 at 00:00

[local] MilleGPG5 5.9.2 (Gennaio 2023) - Local Privilege Escalation / Incorrect Access Control

MilleGPG5 5.9.2 (Gennaio 2023) - Local Privilege Escalation / Incorrect Access Control
  • May 2nd 2023 at 00:00

[webapps] Serendipity 2.4.0 - File Inclusion RCE

Serendipity 2.4.0 - File Inclusion RCE
  • May 2nd 2023 at 00:00

[webapps] Companymaps v8.0 - Stored Cross Site Scripting (XSS)

Companymaps v8.0 - Stored Cross Site Scripting (XSS)
  • May 2nd 2023 at 00:00

[webapps] SoftExpert (SE) Suite v2.1.3 - Local File Inclusion

SoftExpert (SE) Suite v2.1.3 - Local File Inclusion
  • May 2nd 2023 at 00:00

[webapps] PHPJabbers Simple CMS V5.0 - Stored Cross-Site Scripting (XSS)

PHPJabbers Simple CMS V5.0 - Stored Cross-Site Scripting (XSS)
  • May 2nd 2023 at 00:00

[webapps] GLPI 9.5.7 - Username Enumeration

GLPI 9.5.7 - Username Enumeration
  • May 2nd 2023 at 00:00

[webapps] PHPJabbers Simple CMS 5.0 - SQL Injection

PHPJabbers Simple CMS 5.0 - SQL Injection
  • May 2nd 2023 at 00:00

[local] FS-S3900-24T4S - Privilege Escalation

FS-S3900-24T4S - Privilege Escalation
  • May 2nd 2023 at 00:00

[local] Advanced Host Monitor v12.56 - Unquoted Service Path

Advanced Host Monitor v12.56 - Unquoted Service Path
  • May 2nd 2023 at 00:00

[webapps] phpMyFAQ v3.1.12 - CSV Injection

phpMyFAQ v3.1.12 - CSV Injection
  • May 2nd 2023 at 00:00

[webapps] PHP Restaurants 1.0 - SQLi Authentication Bypass & Cross Site Scripting

PHP Restaurants 1.0 - SQLi Authentication Bypass & Cross Site Scripting
  • May 2nd 2023 at 00:00

[webapps] revive-adserver v5.4.1 - Cross-Site Scripting (XSS)

revive-adserver v5.4.1 - Cross-Site Scripting (XSS)
  • May 2nd 2023 at 00:00

[webapps] projectSend r1605 - Private file download

projectSend r1605 - Private file download
  • May 2nd 2023 at 00:00

[webapps] ChurchCRM v4.5.3 - Authenticated SQL Injection

ChurchCRM v4.5.3 - Authenticated SQL Injection
  • April 27th 2023 at 00:00

[webapps] Sophos Web Appliance 4.3.10.4 - Pre-auth command injection

Sophos Web Appliance 4.3.10.4 - Pre-auth command injection
  • April 25th 2023 at 00:00

[local] OCS Inventory NG 2.3.0.0 - Unquoted Service Path

OCS Inventory NG 2.3.0.0 - Unquoted Service Path
  • April 25th 2023 at 00:00

[webapps] PaperCut NG/MG 22.0.4 - Authentication Bypass

PaperCut NG/MG 22.0.4 - Authentication Bypass
  • April 25th 2023 at 00:00

[local] Wondershare Filmora 12.2.9.2233 - Unquoted Service Path

Wondershare Filmora 12.2.9.2233 - Unquoted Service Path
  • April 25th 2023 at 00:00

[webapps] Multi-Vendor Online Groceries Management System 1.0 - Remote Code Execution

Multi-Vendor Online Groceries Management System 1.0 - Remote Code Execution
  • April 25th 2023 at 00:00

[local] Arcsoft PhotoStudio 6.0.0.172 - Unquoted Service Path

Arcsoft PhotoStudio 6.0.0.172 - Unquoted Service Path
  • April 25th 2023 at 00:00

[webapps] KodExplorer 4.49 - CSRF to Arbitrary File Upload

KodExplorer 4.49 - CSRF to Arbitrary File Upload
  • April 25th 2023 at 00:00

[webapps] Mars Stealer 8.3 - Admin Account Takeover

Mars Stealer 8.3 - Admin Account Takeover
  • April 25th 2023 at 00:00
โŒ