FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayExploit-DB Updates

[webapps] CmsMadeSimple v2.2.17 - session hijacking via Server-Side Template Injection (SSTI)

CmsMadeSimple v2.2.17 - session hijacking via Server-Side Template Injection (SSTI)
  • July 19th 2023 at 00:00

[webapps] Blackcat Cms v1.4 - Stored XSS

Blackcat Cms v1.4 - Stored XSS
  • July 19th 2023 at 00:00

[webapps] CmsMadeSimple v2.2.17 - Remote Code Execution (RCE)

CmsMadeSimple v2.2.17 - Remote Code Execution (RCE)
  • July 19th 2023 at 00:00

[webapps] TP-Link TL-WR740N - Authenticated Directory Transversal

TP-Link TL-WR740N - Authenticated Directory Transversal
  • July 19th 2023 at 00:00

[webapps] ABB FlowX v4.00 - Exposure of Sensitive Information

ABB FlowX v4.00 - Exposure of Sensitive Information
  • July 19th 2023 at 00:00

[webapps] Online Piggery Management System v1.0 - unauthenticated file upload vulnerability

Online Piggery Management System v1.0 - unauthenticated file upload vulnerability
  • July 19th 2023 at 00:00

[webapps] Joomla! com_booking component 2.4.9 - Information Leak (Account enumeration)

Joomla! com_booking component 2.4.9 - Information Leak (Account enumeration)
  • July 19th 2023 at 00:00

[remote] Hikvision Hybrid SAN Ds-a71024 Firmware - Multiple Remote Code Execution

Hikvision Hybrid SAN Ds-a71024 Firmware - Multiple Remote Code Execution
  • July 19th 2023 at 00:00

[webapps] CmsMadeSimple v2.2.17 - Stored Cross-Site Scripting (XSS)

CmsMadeSimple v2.2.17 - Stored Cross-Site Scripting (XSS)
  • July 19th 2023 at 00:00

[local] Microsoft Edge 114.0.1823.67 (64-bit) - Information Disclosure

Microsoft Edge 114.0.1823.67 (64-bit) - Information Disclosure
  • July 6th 2023 at 00:00

[webapps] ProjeQtOr Project Management System v10.4.1 - Multiple XSS

ProjeQtOr Project Management System v10.4.1 - Multiple XSS
  • July 15th 2023 at 00:00

[webapps] Icinga Web 2.10 - Authenticated Remote Code Execution

Icinga Web 2.10 - Authenticated Remote Code Execution
  • July 15th 2023 at 00:00

[local] XAMPP 8.2.4 - Unquoted Path

XAMPP 8.2.4 - Unquoted Path
  • July 15th 2023 at 00:00

[webapps] News Portal v4.0 - SQL Injection (Unauthorized)

News Portal v4.0 - SQL Injection (Unauthorized)
  • July 15th 2023 at 00:00

[webapps] Admidio v4.2.10 - Remote Code Execution (RCE)

Admidio v4.2.10 - Remote Code Execution (RCE)
  • July 15th 2023 at 00:00

[webapps] Cisco UCS-IMC Supervisor 2.2.0.0 - Authentication Bypass

Cisco UCS-IMC Supervisor 2.2.0.0 - Authentication Bypass
  • July 15th 2023 at 00:00

[webapps] Pluck v4.7.18 - Remote Code Execution (RCE)

Pluck v4.7.18 - Remote Code Execution (RCE)
  • July 15th 2023 at 00:00

[local] AVG Anti Spyware 7.5 - Unquoted Service Path "AVG Anti-Spyware Guard"

AVG Anti Spyware 7.5 - Unquoted Service Path "AVG Anti-Spyware Guard"
  • July 11th 2023 at 00:00

[local] MiniTool Partition Wizard ShadowMaker v.12.7 - Unquoted Service Path "MTSchedulerService"

MiniTool Partition Wizard ShadowMaker v.12.7 - Unquoted Service Path "MTSchedulerService"
  • July 11th 2023 at 00:00

[webapps] Ateme TITAN File 3.9 - SSRF File Enumeration

Ateme TITAN File 3.9 - SSRF File Enumeration
  • July 11th 2023 at 00:00

[webapps] Netlify CMS 2.10.192 - Stored Cross-Site Scripting (XSS)

Netlify CMS 2.10.192 - Stored Cross-Site Scripting (XSS)
  • July 11th 2023 at 00:00

[webapps] BuildaGate5library v5 - Reflected Cross-Site Scripting (XSS)

BuildaGate5library v5 - Reflected Cross-Site Scripting (XSS)
  • July 11th 2023 at 00:00

[webapps] Spring Cloud 3.2.2 - Remote Command Execution (RCE)

Spring Cloud 3.2.2 - Remote Command Execution (RCE)
  • July 11th 2023 at 00:00

[webapps] Frappe Framework (ERPNext) 13.4.0 - Remote Code Execution (Authenticated)

Frappe Framework (ERPNext) 13.4.0 - Remote Code Execution (Authenticated)
  • July 11th 2023 at 00:00

[local] Game Jackal Server v5 - Unquoted Service Path "GJServiceV5"

Game Jackal Server v5 - Unquoted Service Path "GJServiceV5"
  • July 11th 2023 at 00:00

[local] MiniTool Partition Wizard ShadowMaker v.12.7 - Unquoted Service Path "MTAgentService"

MiniTool Partition Wizard ShadowMaker v.12.7 - Unquoted Service Path "MTAgentService"
  • July 11th 2023 at 00:00

[remote] Windows 10 v21H1 - HTTP Protocol Stack Remote Code Execution

Windows 10 v21H1 - HTTP Protocol Stack Remote Code Execution
  • July 7th 2023 at 00:00

[webapps] Faculty Evaluation System v1.0 - SQL Injection

Faculty Evaluation System v1.0 - SQL Injection
  • July 7th 2023 at 00:00

[webapps] Lost and Found Information System v1.0 - SQL Injection

Lost and Found Information System v1.0 - SQL Injection
  • July 6th 2023 at 00:00

[webapps] Gila CMS 1.10.9 - Remote Code Execution (RCE) (Authenticated)

Gila CMS 1.10.9 - Remote Code Execution (RCE) (Authenticated)
  • July 6th 2023 at 00:00

[webapps] Piwigo v13.7.0 - Stored Cross-Site Scripting (XSS) (Authenticated)

Piwigo v13.7.0 - Stored Cross-Site Scripting (XSS) (Authenticated)
  • July 6th 2023 at 00:00

[webapps] Car Rental Script 1.8 - Stored Cross-site scripting (XSS)

Car Rental Script 1.8 - Stored Cross-site scripting (XSS)
  • July 4th 2023 at 00:00

[webapps] Beauty Salon Management System v1.0 - SQLi

Beauty Salon Management System v1.0 - SQLi
  • July 4th 2023 at 00:00

[webapps] GZ Forum Script 1.8 - Stored Cross-Site Scripting (XSS)

GZ Forum Script 1.8 - Stored Cross-Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] Vacation Rental 1.8 - Stored Cross-Site Scripting (XSS)

Vacation Rental 1.8 - Stored Cross-Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] FuguHub 8.1 - Remote Code Execution

FuguHub 8.1 - Remote Code Execution
  • July 3rd 2023 at 00:00

[webapps] WebsiteBaker v2.13.3 - Stored XSS

WebsiteBaker v2.13.3 - Stored XSS
  • July 3rd 2023 at 00:00

[webapps] Sales of Cashier Goods v1.0 - Cross Site Scripting (XSS)

Sales of Cashier Goods v1.0 - Cross Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] D-Link DAP-1325 - Broken Access Control

D-Link DAP-1325 - Broken Access Control
  • July 3rd 2023 at 00:00

[webapps] WP AutoComplete 1.0.4 - Unauthenticated SQLi

WP AutoComplete 1.0.4 - Unauthenticated SQLi
  • July 3rd 2023 at 00:00

[webapps] WebsiteBaker v2.13.3 - Directory Traversal

WebsiteBaker v2.13.3 - Directory Traversal
  • July 3rd 2023 at 00:00

[webapps] WBCE CMS 1.6.1 - Open Redirect & CSRF

WBCE CMS 1.6.1 - Open Redirect & CSRF
  • July 3rd 2023 at 00:00

[webapps] spip v4.1.10 - Spoofing Admin account

spip v4.1.10 - Spoofing Admin account
  • July 3rd 2023 at 00:00

[dos] TP-Link TL-WR940N V4 - Buffer OverFlow

TP-Link TL-WR940N V4 - Buffer OverFlow
  • July 3rd 2023 at 00:00

[webapps] Alkacon OpenCMS 15.0 - Multiple Cross-Site Scripting (XSS)

Alkacon OpenCMS 15.0 - Multiple Cross-Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] Rukovoditel 3.4.1 - Multiple Stored XSS

Rukovoditel 3.4.1 - Multiple Stored XSS
  • July 3rd 2023 at 00:00

[webapps] Time Slot Booking Calendar 1.8 - Stored Cross-Site Scripting (XSS)

Time Slot Booking Calendar 1.8 - Stored Cross-Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] Prestashop 8.0.4 - Cross-Site Scripting (XSS)

Prestashop 8.0.4 - Cross-Site Scripting (XSS)
  • July 3rd 2023 at 00:00

[webapps] PodcastGenerator 3.2.9 - Blind SSRF via XML Injection

PodcastGenerator 3.2.9 - Blind SSRF via XML Injection
  • July 3rd 2023 at 00:00

[webapps] POS Codekop v2.0 - Authenticated Remote Code Execution (RCE)

POS Codekop v2.0 - Authenticated Remote Code Execution (RCE)
  • July 3rd 2023 at 00:00

[local] Windows 11 22h2 - Kernel Privilege Elevation

Windows 11 22h2 - Kernel Privilege Elevation
  • June 26th 2023 at 00:00

[webapps] Microsoft SharePoint Enterprise Server 2016 - Spoofing

Microsoft SharePoint Enterprise Server 2016 - Spoofing
  • June 26th 2023 at 00:00

[webapps] Xenforo Version 2.2.13 - Authenticated Stored XSS

Xenforo Version 2.2.13 - Authenticated Stored XSS
  • June 26th 2023 at 00:00

[remote] Azure Apache Ambari 2302250400 - Spoofing

Azure Apache Ambari 2302250400 - Spoofing
  • June 26th 2023 at 00:00
โŒ