FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayExploit-DB Updates

[webapps] Jorani v1.0.3-(c)2014-2023 - XSS Reflected & Information Disclosure

Jorani v1.0.3-(c)2014-2023 - XSS Reflected & Information Disclosure
  • September 8th 2023 at 00:00

[remote] GOM Player 2.3.90.5360 - Remote Code Execution (RCE)

GOM Player 2.3.90.5360 - Remote Code Execution (RCE)
  • September 8th 2023 at 00:00

[webapps] Drupal 10.1.2 - web-cache-poisoning-External-service-interaction

Drupal 10.1.2 - web-cache-poisoning-External-service-interaction
  • September 8th 2023 at 00:00

[local] GOM Player 2.3.90.5360 - Buffer Overflow (PoC)

GOM Player 2.3.90.5360 - Buffer Overflow (PoC)
  • September 8th 2023 at 00:00

[webapps] Wordpress Plugin Elementor 3.5.5 - Iframe Injection

Wordpress Plugin Elementor 3.5.5 - Iframe Injection
  • September 8th 2023 at 00:00

[webapps] Wp2Fac - OS Command Injection

Wp2Fac - OS Command Injection
  • September 8th 2023 at 00:00

[remote] Techview LA-5570 Wireless Gateway Home Automation Controller - Multiple Vulnerabilities

Techview LA-5570 Wireless Gateway Home Automation Controller - Multiple Vulnerabilities
  • September 8th 2023 at 00:00

[dos] SyncBreeze 15.2.24 - 'login' Denial of Service

SyncBreeze 15.2.24 - 'login' Denial of Service
  • September 8th 2023 at 00:00

[webapps] SPA-Cart eCommerce CMS 1.9.0.3 - SQL Injection

SPA-Cart eCommerce CMS 1.9.0.3 - SQL Injection
  • September 8th 2023 at 00:00

[webapps] soosyze 2.0.0 - File Upload

soosyze 2.0.0 - File Upload
  • September 8th 2023 at 00:00

[webapps] Academy LMS 6.1 - Arbitrary File Upload

Academy LMS 6.1 - Arbitrary File Upload
  • September 4th 2023 at 00:00

[local] Freefloat FTP Server 1.0 - 'PWD' Remote Buffer Overflow

Freefloat FTP Server 1.0 - 'PWD' Remote Buffer Overflow
  • September 4th 2023 at 00:00

[webapps] DLINK DPH-400SE - Exposure of Sensitive Information

DLINK DPH-400SE - Exposure of Sensitive Information
  • September 4th 2023 at 00:00

[webapps] Bus Reservation System 1.1 - Multiple-SQLi

Bus Reservation System 1.1 - Multiple-SQLi
  • September 4th 2023 at 00:00

[webapps] CSZ CMS 1.3.0 - Stored Cross-Site Scripting ('Photo URL' and 'YouTube URL' )

CSZ CMS 1.3.0 - Stored Cross-Site Scripting ('Photo URL' and 'YouTube URL' )
  • September 4th 2023 at 00:00

[local] Kingo ROOT 1.5.8 - Unquoted Service Path

Kingo ROOT 1.5.8 - Unquoted Service Path
  • September 4th 2023 at 00:00

[webapps] Hyip Rio 2.1 - Arbitrary File Upload

Hyip Rio 2.1 - Arbitrary File Upload
  • September 4th 2023 at 00:00

[webapps] Blood Donor Management System v1.0 - Stored XSS

Blood Donor Management System v1.0 - Stored XSS
  • September 4th 2023 at 00:00

[webapps] SPA-Cart eCommerce CMS 1.9.0.3 - Reflected XSS

SPA-Cart eCommerce CMS 1.9.0.3 - Reflected XSS
  • September 4th 2023 at 00:00

[webapps] CSZ CMS 1.3.0 - Stored Cross-Site Scripting (Plugin 'Gallery')

CSZ CMS 1.3.0 - Stored Cross-Site Scripting (Plugin 'Gallery')
  • September 4th 2023 at 00:00

[webapps] FileMage Gateway 1.10.9 - Local File Inclusion

FileMage Gateway 1.10.9 - Local File Inclusion
  • September 4th 2023 at 00:00

[local] NVClient v5.0 - Stack Buffer Overflow (DoS)

NVClient v5.0 - Stack Buffer Overflow (DoS)
  • September 4th 2023 at 00:00

[webapps] WP Statistics Plugin 13.1.5 current_page_id - Time based SQL injection (Unauthenticated)

WP Statistics Plugin 13.1.5 current_page_id - Time based SQL injection (Unauthenticated)
  • September 4th 2023 at 00:00

[webapps] Credit Lite 1.5.4 - SQL Injection

Credit Lite 1.5.4 - SQL Injection
  • September 4th 2023 at 00:00

[webapps] AdminLTE PiHole 5.18 - Broken Access Control

AdminLTE PiHole 5.18 - Broken Access Control
  • September 4th 2023 at 00:00

[webapps] Member Login Script 3.3 - Client-side desync

Member Login Script 3.3 - Client-side desync
  • September 4th 2023 at 00:00

[webapps] Uvdesk 1.1.4 - Stored XSS (Authenticated)

Uvdesk 1.1.4 - Stored XSS (Authenticated)
  • August 24th 2023 at 00:00

[webapps] User Registration & Login and User Management System v3.0 - SQL Injection (Unauthenticated)

User Registration & Login and User Management System v3.0 - SQL Injection (Unauthenticated)
  • August 24th 2023 at 00:00

[webapps] User Registration & Login and User Management System v3.0 - Stored Cross-Site Scripting (XSS)

User Registration & Login and User Management System v3.0 - Stored Cross-Site Scripting (XSS)
  • August 24th 2023 at 00:00

[remote] TSplus 16.0.2.14 - Remote Access Insecure Files and Folders Permissions

TSplus 16.0.2.14 - Remote Access Insecure Files and Folders Permissions
  • August 21st 2023 at 00:00

[webapps] Dolibarr Version 17.0.1 - Stored XSS

Dolibarr Version 17.0.1 - Stored XSS
  • August 21st 2023 at 00:00

[webapps] PHPJabbers Business Directory Script v3.2 - Multiple Vulnerabilities

PHPJabbers Business Directory Script v3.2 - Multiple Vulnerabilities
  • August 21st 2023 at 00:00

[webapps] Global - Multi School Management System Express v1.0- SQL Injection

Global - Multi School Management System Express v1.0- SQL Injection
  • August 21st 2023 at 00:00

[webapps] OVOO Movie Portal CMS v3.3.3 - SQL Injection

OVOO Movie Portal CMS v3.3.3 - SQL Injection
  • August 21st 2023 at 00:00

[remote] TSPlus 16.0.0.0 - Remote Work Insecure Credential storage

TSPlus 16.0.0.0 - Remote Work Insecure Credential storage
  • August 21st 2023 at 00:00

[remote] EuroTel ETL3100 - Transmitter Default Credentials

EuroTel ETL3100 - Transmitter Default Credentials
  • August 21st 2023 at 00:00

[webapps] Color Prediction Game v1.0 - SQL Injection

Color Prediction Game v1.0 - SQL Injection
  • August 21st 2023 at 00:00

[webapps] Taskhub CRM Tool 2.8.6 - SQL Injection

Taskhub CRM Tool 2.8.6 - SQL Injection
  • August 21st 2023 at 00:00

[remote] EuroTel ETL3100 - Transmitter Authorization Bypass (IDOR)

EuroTel ETL3100 - Transmitter Authorization Bypass (IDOR)
  • August 21st 2023 at 00:00

[webapps] Crypto Currency Tracker (CCT) 9.5 - Admin Account Creation (Unauthenticated)

Crypto Currency Tracker (CCT) 9.5 - Admin Account Creation (Unauthenticated)
  • August 21st 2023 at 00:00

[local] Inosoft VisiWin 7 2022-2.1 - Insecure Folders Permissions

Inosoft VisiWin 7 2022-2.1 - Insecure Folders Permissions
  • August 21st 2023 at 00:00

[remote] TSplus 16.0.0.0 - Remote Work Insecure Files and Folders

TSplus 16.0.0.0 - Remote Work Insecure Files and Folders
  • August 21st 2023 at 00:00

[remote] EuroTel ETL3100 - Transmitter Unauthenticated Config/Log Download

EuroTel ETL3100 - Transmitter Unauthenticated Config/Log Download
  • August 21st 2023 at 00:00

[webapps] Maltrail v0.53 - Unauthenticated Remote Code Execution (RCE)

Maltrail v0.53 - Unauthenticated Remote Code Execution (RCE)
  • August 10th 2023 at 00:00

[local] OutSystems Service Studio 11.53.30 - DLL Hijacking

OutSystems Service Studio 11.53.30 - DLL Hijacking
  • August 10th 2023 at 00:00

[remote] TP-Link Archer AX21 - Unauthenticated Command Injection

TP-Link Archer AX21 - Unauthenticated Command Injection
  • August 10th 2023 at 00:00

[webapps] Request-Baskets v1.2.1 - Server-side request forgery (SSRF)

Request-Baskets v1.2.1 - Server-side request forgery (SSRF)
  • August 10th 2023 at 00:00

[local] systemd 246 - Local Privilege Escalation

systemd 246 - Local Privilege Escalation
  • August 10th 2023 at 00:00

[webapps] PHPJabbers Vacation Rental Script 4.0 - CSRF

PHPJabbers Vacation Rental Script 4.0 - CSRF
  • August 8th 2023 at 00:00

[webapps] Social-Commerce 3.1.6 - Reflected XSS

Social-Commerce 3.1.6 - Reflected XSS
  • August 8th 2023 at 00:00

[webapps] Emagic Data Center Management Suite v6.0 - OS Command Injection

Emagic Data Center Management Suite v6.0 - OS Command Injection
  • August 8th 2023 at 00:00

[webapps] mooSocial 3.1.8 - Reflected XSS

mooSocial 3.1.8 - Reflected XSS
  • August 8th 2023 at 00:00

[webapps] Pyro CMS 3.9 - Server-Side Template Injection (SSTI) (Authenticated)

Pyro CMS 3.9 - Server-Side Template Injection (SSTI) (Authenticated)
  • August 8th 2023 at 00:00

[webapps] Adlisting Classified Ads 2.14.0 - WebPage Content Information Disclosure

Adlisting Classified Ads 2.14.0 - WebPage Content Information Disclosure
  • August 8th 2023 at 00:00

[webapps] Lucee 5.4.2.17 - Authenticated Reflected XSS

Lucee 5.4.2.17 - Authenticated Reflected XSS
  • August 8th 2023 at 00:00

[webapps] JLex GuestBook 1.6.4 - Reflected XSS

JLex GuestBook 1.6.4 - Reflected XSS
  • August 4th 2023 at 00:00

[webapps] Adiscon LogAnalyzer v.4.1.13 - Cross Site Scripting

Adiscon LogAnalyzer v.4.1.13 - Cross Site Scripting
  • August 4th 2023 at 00:00

[webapps] Webedition CMS v2.9.8.8 - Stored XSS

Webedition CMS v2.9.8.8 - Stored XSS
  • August 4th 2023 at 00:00
โŒ