FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayExploit-DB Updates

[webapps] mooSocial 3.1.8 - Cross-Site Scripting (XSS) on User Login Page

mooSocial 3.1.8 - Cross-Site Scripting (XSS) on User Login Page
  • February 2nd 2024 at 00:00

[remote] PCMan FTP Server 2.0 - 'pwd' Remote Buffer Overflow

PCMan FTP Server 2.0 - 'pwd' Remote Buffer Overflow
  • February 2nd 2024 at 00:00

[webapps] Electrolink FM/DAB/TV Transmitter (controlloLogin.js) - Credentials Disclosure

Electrolink FM/DAB/TV Transmitter (controlloLogin.js) - Credentials Disclosure
  • February 2nd 2024 at 00:00

[dos] Electrolink FM/DAB/TV Transmitter - Unauthenticated Remote DoS

Electrolink FM/DAB/TV Transmitter - Unauthenticated Remote DoS
  • February 2nd 2024 at 00:00

[webapps] Juniper-SRX-Firewalls&EX-switches - (PreAuth-RCE) (PoC)

Juniper-SRX-Firewalls&EX-switches - (PreAuth-RCE) (PoC)
  • February 2nd 2024 at 00:00

[webapps] Electrolink FM/DAB/TV Transmitter (login.htm/mail.htm) - Credentials Disclosure

Electrolink FM/DAB/TV Transmitter (login.htm/mail.htm) - Credentials Disclosure
  • February 2nd 2024 at 00:00

[remote] WebCatalog 48.4 - Arbitrary Protocol Execution

WebCatalog 48.4 - Arbitrary Protocol Execution
  • February 2nd 2024 at 00:00

[webapps] Electrolink FM/DAB/TV Transmitter - Remote Authentication Removal

Electrolink FM/DAB/TV Transmitter - Remote Authentication Removal
  • February 2nd 2024 at 00:00

[webapps] GoAhead Web Server 2.5 - 'goform/formTest' Multiple HTML Injection Vulnerabilities

GoAhead Web Server 2.5 - 'goform/formTest' Multiple HTML Injection Vulnerabilities
  • January 31st 2024 at 00:00

[remote] RoyalTSX 6.0.1 - RTSZ File Handling Heap Memory Corruption PoC

RoyalTSX 6.0.1 - RTSZ File Handling Heap Memory Corruption PoC
  • January 31st 2024 at 00:00

[remote] Proxmox VE - TOTP Brute Force

Proxmox VE - TOTP Brute Force
  • January 31st 2024 at 00:00

[webapps] 101 News 1.0 - Multiple-SQLi

101 News 1.0 - Multiple-SQLi
  • January 31st 2024 at 00:00

[webapps] Academy LMS 6.2 - SQL Injection

Academy LMS 6.2 - SQL Injection
  • January 31st 2024 at 00:00

[webapps] Academy LMS 6.2 - Reflected XSS

Academy LMS 6.2 - Reflected XSS
  • January 31st 2024 at 00:00
  • January 31st 2024 at 00:00

[remote] Equipment Rental Script-1.0 - SQLi

Equipment Rental Script-1.0 - SQLi
  • January 29th 2024 at 00:00

[remote] Ricoh Printer - Directory and File Exposure

Ricoh Printer - Directory and File Exposure
  • January 29th 2024 at 00:00

[remote] Blood Bank & Donor Management System using v2.2 - Stored XSS

Blood Bank & Donor Management System using v2.2 - Stored XSS
  • January 29th 2024 at 00:00

[webapps] Fundraising Script 1.0 - SQLi

Fundraising Script 1.0 - SQLi
  • January 29th 2024 at 00:00

[webapps] PHP Shopping Cart 4.2 - Multiple-SQLi

PHP Shopping Cart 4.2 - Multiple-SQLi
  • January 29th 2024 at 00:00

[local] Typora v1.7.4 - OS Command Injection

Typora v1.7.4 - OS Command Injection
  • January 29th 2024 at 00:00

[local] 7 Sticky Notes v1.9 - OS Command Injection

7 Sticky Notes v1.9 - OS Command Injection
  • January 29th 2024 at 00:00

[webapps] Bank Locker Management System - SQL Injection

Bank Locker Management System - SQL Injection
  • January 29th 2024 at 00:00

[remote] Atcom 2.7.x.x - Authenticated Command Injection

Atcom 2.7.x.x - Authenticated Command Injection
  • October 9th 2023 at 00:00

[webapps] Shuttle-Booking-Software v1.0 - Multiple-SQLi

Shuttle-Booking-Software v1.0 - Multiple-SQLi
  • October 9th 2023 at 00:00

[webapps] Wordpress Plugin Masterstudy LMS - 3.0.17 - Unauthenticated Instructor Account Creation

Wordpress Plugin Masterstudy LMS - 3.0.17 - Unauthenticated Instructor Account Creation
  • October 9th 2023 at 00:00

[webapps] GLPI GZIP(Py3) 9.4.5 - RCE

GLPI GZIP(Py3) 9.4.5 - RCE
  • October 9th 2023 at 00:00

[webapps] Wordpress Sonaar Music Plugin 4.7 - Stored XSS

Wordpress Sonaar Music Plugin 4.7 - Stored XSS
  • October 9th 2023 at 00:00

[webapps] Limo Booking Software v1.0 - CORS

Limo Booking Software v1.0 - CORS
  • October 9th 2023 at 00:00

[dos] OpenPLC WebServer 3 - Denial of Service

OpenPLC WebServer 3 - Denial of Service
  • October 9th 2023 at 00:00

[webapps] Clcknshop 1.0.0 - SQL Injection

Clcknshop 1.0.0 - SQL Injection
  • October 9th 2023 at 00:00

[dos] Tinycontrol LAN Controller v3 (LK3) 1.58a - Remote Denial Of Service

Tinycontrol LAN Controller v3 (LK3) 1.58a - Remote Denial Of Service
  • October 9th 2023 at 00:00

[webapps] WEBIGniter v28.7.23 File Upload - Remote Code Execution

WEBIGniter v28.7.23 File Upload - Remote Code Execution
  • October 9th 2023 at 00:00

[webapps] Online ID Generator 1.0 - Remote Code Execution (RCE)

Online ID Generator 1.0 - Remote Code Execution (RCE)
  • October 9th 2023 at 00:00

[webapps] Webedition CMS v2.9.8.8 - Blind SSRF

Webedition CMS v2.9.8.8 - Blind SSRF
  • October 9th 2023 at 00:00

[webapps] Cacti 1.2.24 - Authenticated command injection when using SNMP options

Cacti 1.2.24 - Authenticated command injection when using SNMP options
  • October 9th 2023 at 00:00

[webapps] Splunk 9.0.5 - admin account take over

Splunk 9.0.5 - admin account take over
  • October 9th 2023 at 00:00

[remote] Ruijie Reyee Mesh Router - MITM Remote Code Execution (RCE)

Ruijie Reyee Mesh Router - MITM Remote Code Execution (RCE)
  • October 9th 2023 at 00:00

[webapps] Media Library Assistant Wordpress Plugin - RCE and LFI

Media Library Assistant Wordpress Plugin - RCE and LFI
  • October 9th 2023 at 00:00

[local] Microsoft Windows 11 - 'apds.dll' DLL hijacking (Forced)

Microsoft Windows 11 - 'apds.dll' DLL hijacking (Forced)
  • October 9th 2023 at 00:00

[remote] Tinycontrol LAN Controller v3 (LK3) 1.58a - Remote Credentials Extraction

Tinycontrol LAN Controller v3 (LK3) 1.58a - Remote Credentials Extraction
  • October 9th 2023 at 00:00

[webapps] BoidCMS v2.0.0 - authenticated file upload vulnerability

BoidCMS v2.0.0 - authenticated file upload vulnerability
  • October 9th 2023 at 00:00

[remote] Tinycontrol LAN Controller v3 (LK3) 1.58a - Remote Admin Password Change

Tinycontrol LAN Controller v3 (LK3) 1.58a - Remote Admin Password Change
  • October 9th 2023 at 00:00

[webapps] Coppermine Gallery 1.6.25 - RCE

Coppermine Gallery 1.6.25 - RCE
  • October 9th 2023 at 00:00

[webapps] Minio 2022-07-29T19-40-48Z - Path traversal

Minio 2022-07-29T19-40-48Z - Path traversal
  • October 9th 2023 at 00:00

[webapps] Jorani v1.0.3-(c)2014-2023 - XSS Reflected & Information Disclosure

Jorani v1.0.3-(c)2014-2023 - XSS Reflected & Information Disclosure
  • September 8th 2023 at 00:00

[remote] GOM Player 2.3.90.5360 - Remote Code Execution (RCE)

GOM Player 2.3.90.5360 - Remote Code Execution (RCE)
  • September 8th 2023 at 00:00

[webapps] Drupal 10.1.2 - web-cache-poisoning-External-service-interaction

Drupal 10.1.2 - web-cache-poisoning-External-service-interaction
  • September 8th 2023 at 00:00

[local] GOM Player 2.3.90.5360 - Buffer Overflow (PoC)

GOM Player 2.3.90.5360 - Buffer Overflow (PoC)
  • September 8th 2023 at 00:00

[webapps] Wordpress Plugin Elementor 3.5.5 - Iframe Injection

Wordpress Plugin Elementor 3.5.5 - Iframe Injection
  • September 8th 2023 at 00:00

[webapps] Wp2Fac - OS Command Injection

Wp2Fac - OS Command Injection
  • September 8th 2023 at 00:00

[remote] Techview LA-5570 Wireless Gateway Home Automation Controller - Multiple Vulnerabilities

Techview LA-5570 Wireless Gateway Home Automation Controller - Multiple Vulnerabilities
  • September 8th 2023 at 00:00

[dos] SyncBreeze 15.2.24 - 'login' Denial of Service

SyncBreeze 15.2.24 - 'login' Denial of Service
  • September 8th 2023 at 00:00

[webapps] SPA-Cart eCommerce CMS 1.9.0.3 - SQL Injection

SPA-Cart eCommerce CMS 1.9.0.3 - SQL Injection
  • September 8th 2023 at 00:00

[webapps] soosyze 2.0.0 - File Upload

soosyze 2.0.0 - File Upload
  • September 8th 2023 at 00:00

[webapps] Academy LMS 6.1 - Arbitrary File Upload

Academy LMS 6.1 - Arbitrary File Upload
  • September 4th 2023 at 00:00

[local] Freefloat FTP Server 1.0 - 'PWD' Remote Buffer Overflow

Freefloat FTP Server 1.0 - 'PWD' Remote Buffer Overflow
  • September 4th 2023 at 00:00

[webapps] DLINK DPH-400SE - Exposure of Sensitive Information

DLINK DPH-400SE - Exposure of Sensitive Information
  • September 4th 2023 at 00:00

[webapps] Bus Reservation System 1.1 - Multiple-SQLi

Bus Reservation System 1.1 - Multiple-SQLi
  • September 4th 2023 at 00:00
โŒ