FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayExploit-DB Updates

[remote] Windows 10 v21H1 - HTTP Protocol Stack Remote Code Execution

Windows 10 v21H1 - HTTP Protocol Stack Remote Code Execution
  • July 7th 2023 at 00:00

[webapps] Faculty Evaluation System v1.0 - SQL Injection

Faculty Evaluation System v1.0 - SQL Injection
  • July 7th 2023 at 00:00

[webapps] Lost and Found Information System v1.0 - SQL Injection

Lost and Found Information System v1.0 - SQL Injection
  • July 6th 2023 at 00:00

[webapps] Gila CMS 1.10.9 - Remote Code Execution (RCE) (Authenticated)

Gila CMS 1.10.9 - Remote Code Execution (RCE) (Authenticated)
  • July 6th 2023 at 00:00

[webapps] Piwigo v13.7.0 - Stored Cross-Site Scripting (XSS) (Authenticated)

Piwigo v13.7.0 - Stored Cross-Site Scripting (XSS) (Authenticated)
  • July 6th 2023 at 00:00

[webapps] Car Rental Script 1.8 - Stored Cross-site scripting (XSS)

Car Rental Script 1.8 - Stored Cross-site scripting (XSS)
  • July 4th 2023 at 00:00

[webapps] Beauty Salon Management System v1.0 - SQLi

Beauty Salon Management System v1.0 - SQLi
  • July 4th 2023 at 00:00

[webapps] GZ Forum Script 1.8 - Stored Cross-Site Scripting (XSS)

GZ Forum Script 1.8 - Stored Cross-Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] Vacation Rental 1.8 - Stored Cross-Site Scripting (XSS)

Vacation Rental 1.8 - Stored Cross-Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] FuguHub 8.1 - Remote Code Execution

FuguHub 8.1 - Remote Code Execution
  • July 3rd 2023 at 00:00

[webapps] WebsiteBaker v2.13.3 - Stored XSS

WebsiteBaker v2.13.3 - Stored XSS
  • July 3rd 2023 at 00:00

[webapps] Sales of Cashier Goods v1.0 - Cross Site Scripting (XSS)

Sales of Cashier Goods v1.0 - Cross Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] D-Link DAP-1325 - Broken Access Control

D-Link DAP-1325 - Broken Access Control
  • July 3rd 2023 at 00:00

[webapps] WP AutoComplete 1.0.4 - Unauthenticated SQLi

WP AutoComplete 1.0.4 - Unauthenticated SQLi
  • July 3rd 2023 at 00:00

[webapps] WebsiteBaker v2.13.3 - Directory Traversal

WebsiteBaker v2.13.3 - Directory Traversal
  • July 3rd 2023 at 00:00

[webapps] WBCE CMS 1.6.1 - Open Redirect & CSRF

WBCE CMS 1.6.1 - Open Redirect & CSRF
  • July 3rd 2023 at 00:00

[webapps] spip v4.1.10 - Spoofing Admin account

spip v4.1.10 - Spoofing Admin account
  • July 3rd 2023 at 00:00

[dos] TP-Link TL-WR940N V4 - Buffer OverFlow

TP-Link TL-WR940N V4 - Buffer OverFlow
  • July 3rd 2023 at 00:00

[webapps] Alkacon OpenCMS 15.0 - Multiple Cross-Site Scripting (XSS)

Alkacon OpenCMS 15.0 - Multiple Cross-Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] Rukovoditel 3.4.1 - Multiple Stored XSS

Rukovoditel 3.4.1 - Multiple Stored XSS
  • July 3rd 2023 at 00:00

[webapps] Time Slot Booking Calendar 1.8 - Stored Cross-Site Scripting (XSS)

Time Slot Booking Calendar 1.8 - Stored Cross-Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] Prestashop 8.0.4 - Cross-Site Scripting (XSS)

Prestashop 8.0.4 - Cross-Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] PodcastGenerator 3.2.9 - Blind SSRF via XML Injection

PodcastGenerator 3.2.9 - Blind SSRF via XML Injection
  • July 3rd 2023 at 00:00

[webapps] POS Codekop v2.0 - Authenticated Remote Code Execution (RCE)

POS Codekop v2.0 - Authenticated Remote Code Execution (RCE)
  • July 3rd 2023 at 00:00

[local] Windows 11 22h2 - Kernel Privilege Elevation

Windows 11 22h2 - Kernel Privilege Elevation
  • June 26th 2023 at 00:00

[webapps] Microsoft SharePoint Enterprise Server 2016 - Spoofing

Microsoft SharePoint Enterprise Server 2016 - Spoofing
  • June 26th 2023 at 00:00

[webapps] Xenforo Version 2.2.13 - Authenticated Stored XSS

Xenforo Version 2.2.13 - Authenticated Stored XSS
  • June 26th 2023 at 00:00

[remote] Azure Apache Ambari 2302250400 - Spoofing

Azure Apache Ambari 2302250400 - Spoofing
  • June 26th 2023 at 00:00

[local] NCH Express Invoice - Clear Text Password Storage and Account Takeover

NCH Express Invoice - Clear Text Password Storage and Account Takeover
  • June 23rd 2023 at 00:00

[webapps] MCL-Net 4.3.5.8788 - Information Disclosure

MCL-Net 4.3.5.8788 - Information Disclosure
  • June 23rd 2023 at 00:00

[webapps] Smart Office Web 20.28 - Remote Information Disclosure (Unauthenticated)

Smart Office Web 20.28 - Remote Information Disclosure (Unauthenticated)
  • June 22nd 2023 at 00:00

[remote] Microsoft OneNote (Version 2305 Build 16.0.16501.20074) 64-bit - Spoofing

Microsoft OneNote (Version 2305 Build 16.0.16501.20074) 64-bit - Spoofing
  • June 22nd 2023 at 00:00

[webapps] HiSecOS 04.0.01 - Privilege Escalation

HiSecOS 04.0.01 - Privilege Escalation
  • June 21st 2023 at 00:00

[webapps] Super Socializer 7.13.52 - Reflected XSS

Super Socializer 7.13.52 - Reflected XSS
  • June 20th 2023 at 00:00

[webapps] WP Sticky Social 1.0.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting (XSS)

WP Sticky Social 1.0.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting (XSS)
  • June 20th 2023 at 00:00

[webapps] SPIP v4.2.0 - Remote Code Execution (Unauthenticated)

SPIP v4.2.0 - Remote Code Execution (Unauthenticated)
  • June 20th 2023 at 00:00

[remote] Nokia ASIKA 7.13.52 - Hard-coded private key disclosure

Nokia ASIKA 7.13.52 - Hard-coded private key disclosure
  • June 20th 2023 at 00:00

[webapps] Symantec SiteMinder WebAgent v12.52 - Cross-site scripting (XSS)

Symantec SiteMinder WebAgent v12.52 - Cross-site scripting (XSS)
  • June 19th 2023 at 00:00

[webapps] Student Study Center Management System v1.0 - Stored Cross-Site Scripting (XSS)

Student Study Center Management System v1.0 - Stored Cross-Site Scripting (XSS)
  • June 19th 2023 at 00:00

[webapps] The Shop v2.5 - SQL Injection

The Shop v2.5 - SQL Injection
  • June 19th 2023 at 00:00

[webapps] Jobpilot v2.61 - SQL Injection

Jobpilot v2.61 - SQL Injection
  • June 19th 2023 at 00:00

[webapps] Diafan CMS 6.0 - Reflected Cross-Site Scripting (XSS)

Diafan CMS 6.0 - Reflected Cross-Site Scripting (XSS)
  • June 19th 2023 at 00:00

[webapps] Groomify v1.0 - SQL Injection

Groomify v1.0 - SQL Injection
  • June 19th 2023 at 00:00

[webapps] WordPress Theme Medic v1.0.0 - Weak Password Recovery Mechanism for Forgotten Password

WordPress Theme Medic v1.0.0 - Weak Password Recovery Mechanism for Forgotten Password
  • June 19th 2023 at 00:00

[webapps] Online Art gallery project 1.0 - Arbitrary File Upload (Unauthenticated)

Online Art gallery project 1.0 - Arbitrary File Upload (Unauthenticated)
  • June 15th 2023 at 00:00

[webapps] PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE)

PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE)
  • June 14th 2023 at 00:00

[webapps] Textpattern CMS v4.8.8 - Stored Cross-Site Scripting (XSS) (Authenticated)

Textpattern CMS v4.8.8 - Stored Cross-Site Scripting (XSS) (Authenticated)
  • June 14th 2023 at 00:00

[webapps] Xoops CMS 2.5.10 - Stored Cross-Site Scripting (XSS) (Authenticated)

Xoops CMS 2.5.10 - Stored Cross-Site Scripting (XSS) (Authenticated)
  • June 14th 2023 at 00:00

[webapps] projectSend r1605 - Stored XSS

projectSend r1605 - Stored XSS
  • June 14th 2023 at 00:00

[webapps] Online Thesis Archiving System v1.0 - Multiple-SQLi

Online Thesis Archiving System v1.0 - Multiple-SQLi
  • June 14th 2023 at 00:00

[remote] Anevia Flamingo XL 3.2.9 - Remote Root Jailbreak

Anevia Flamingo XL 3.2.9 - Remote Root Jailbreak
  • June 14th 2023 at 00:00

[webapps] projectSend r1605 - CSV injection

projectSend r1605 - CSV injection
  • June 14th 2023 at 00:00

[remote] Anevia Flamingo XS 3.6.5 - Authenticated Root Remote Code Execution

Anevia Flamingo XS 3.6.5 - Authenticated Root Remote Code Execution
  • June 14th 2023 at 00:00

[webapps] PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE)

PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE)
  • June 14th 2023 at 00:00

[webapps] Monstra 3.0.4 - Stored Cross-Site Scripting (XSS)

Monstra 3.0.4 - Stored Cross-Site Scripting (XSS)
  • June 14th 2023 at 00:00
โŒ