FreshRSS

๐Ÿ”’
โŒ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayExploit-DB Updates

[remote] GL-iNet MT6000 4.5.5 - Arbitrary File Download

GL-iNet MT6000 4.5.5 - Arbitrary File Download
  • April 2nd 2024 at 00:00

[webapps] Daily Habit Tracker 1.0 - Broken Access Control

Daily Habit Tracker 1.0 - Broken Access Control
  • April 2nd 2024 at 00:00

[webapps] LeptonCMS 7.0.0 - Remote Code Execution (RCE) (Authenticated)

LeptonCMS 7.0.0 - Remote Code Execution (RCE) (Authenticated)
  • April 2nd 2024 at 00:00

[remote] Asterisk AMI - Partial File Content & Path Disclosure (Authenticated)

Asterisk AMI - Partial File Content & Path Disclosure (Authenticated)
  • March 28th 2024 at 00:00

[webapps] Workout Journal App 1.0 - Stored XSS

Workout Journal App 1.0 - Stored XSS
  • March 28th 2024 at 00:00

[dos] RouterOS 6.40.5 - 6.44 and 6.48.1 - 6.49.10 - Denial of Service

RouterOS 6.40.5 - 6.44 and 6.48.1 - 6.49.10 - Denial of Service
  • March 28th 2024 at 00:00

[remote] WinRAR version 6.22 - Remote Code Execution via ZIP archive

WinRAR version 6.22 - Remote Code Execution via ZIP archive
  • March 28th 2024 at 00:00

[webapps] Purei CMS 1.0 - SQL Injection

Purei CMS 1.0 - SQL Injection
  • March 28th 2024 at 00:00

[webapps] Broken Access Control - on NodeBB v3.6.7

Broken Access Control - on NodeBB v3.6.7
  • March 28th 2024 at 00:00

[webapps] liveSite Version 2019.1 - Remote Code Execution

liveSite Version 2019.1 - Remote Code Execution
  • March 28th 2024 at 00:00

[webapps] Craft CMS 4.4.14 - Unauthenticated Remote Code Execution

Craft CMS 4.4.14 - Unauthenticated Remote Code Execution
  • March 25th 2024 at 00:00

[webapps] Tourism Management System v2.0 - Arbitrary File Upload

Tourism Management System v2.0 - Arbitrary File Upload
  • March 25th 2024 at 00:00

[webapps] SPA-CART CMS - Stored XSS

SPA-CART CMS - Stored XSS
  • March 25th 2024 at 00:00

[webapps] Nagios XI Version 2024R1.01 - SQL Injection

Nagios XI Version 2024R1.01 - SQL Injection
  • March 25th 2024 at 00:00

[remote] LBT-T300-mini1 - Remote Buffer Overflow

LBT-T300-mini1 - Remote Buffer Overflow
  • March 25th 2024 at 00:00

[webapps] Insurance Management System PHP and MySQL 1.0 - Multiple Stored XSS

Insurance Management System PHP and MySQL 1.0 - Multiple Stored XSS
  • March 25th 2024 at 00:00

[webapps] LimeSurvey Community 5.3.32 - Stored XSS

LimeSurvey Community 5.3.32 - Stored XSS
  • March 25th 2024 at 00:00

[webapps] MobileShop master v1.0 - SQL Injection Vuln.

MobileShop master v1.0 - SQL Injection Vuln.
  • March 25th 2024 at 00:00

[remote] minaliC 2.0.0 - Denied of Service

minaliC 2.0.0 - Denied of Service
  • March 22nd 2024 at 00:00

[webapps] Teacher Subject Allocation Management System 1.0 - 'searchdata' SQLi

Teacher Subject Allocation Management System 1.0 - 'searchdata' SQLi
  • March 20th 2024 at 00:00

[webapps] Employee Management System 1.0 - 'admin_id' SQLi

Employee Management System 1.0 - 'admin_id' SQLi
  • March 20th 2024 at 00:00

[webapps] Simple Task List 1.0 - 'status' SQLi

Simple Task List 1.0 - 'status' SQLi
  • March 20th 2024 at 00:00

[webapps] Blood Bank 1.0 - 'bid' SQLi

Blood Bank 1.0 - 'bid' SQLi
  • March 20th 2024 at 00:00

[webapps] CSZCMS v1.3.0 - SQL Injection (Authenticated)

CSZCMS v1.3.0 - SQL Injection (Authenticated)
  • March 20th 2024 at 00:00

[remote] HNAS SMU 14.8.7825 - Information Disclosure

HNAS SMU 14.8.7825 - Information Disclosure
  • March 20th 2024 at 00:00

[remote] TELSAT marKoni FM Transmitter 1.9.5 - Insecure Access Control Change Password

TELSAT marKoni FM Transmitter 1.9.5 - Insecure Access Control Change Password
  • March 18th 2024 at 00:00

[remote] TELSAT marKoni FM Transmitter 1.9.5 - Backdoor Account Information Disclosure

TELSAT marKoni FM Transmitter 1.9.5 - Backdoor Account Information Disclosure
  • March 18th 2024 at 00:00

[remote] TELSAT marKoni FM Transmitter 1.9.5 - Root Command Injection

TELSAT marKoni FM Transmitter 1.9.5 - Root Command Injection
  • March 18th 2024 at 00:00

[webapps] WEBIGniter v28.7.23 - Stored XSS

WEBIGniter v28.7.23 - Stored XSS
  • March 18th 2024 at 00:00

[webapps] Quick.CMS 6.7 - SQL Injection Login Bypass

Quick.CMS 6.7 - SQL Injection Login Bypass
  • March 18th 2024 at 00:00

[webapps] xbtitFM 4.1.18 - Multiple Vulnerabilities

xbtitFM 4.1.18 - Multiple Vulnerabilities
  • March 18th 2024 at 00:00

[webapps] TYPO3 11.5.24 - Path Traversal (Authenticated)

TYPO3 11.5.24 - Path Traversal (Authenticated)
  • March 18th 2024 at 00:00

[webapps] Backdrop CMS 1.23.0 - Stored XSS

Backdrop CMS 1.23.0 - Stored XSS
  • March 18th 2024 at 00:00

[webapps] Winter CMS 1.2.3 - Server-Side Template Injection (SSTI) (Authenticated)

Winter CMS 1.2.3 - Server-Side Template Injection (SSTI) (Authenticated)
  • March 16th 2024 at 00:00

[webapps] Karaf v4.4.3 Console - RCE

Karaf v4.4.3 Console - RCE
  • March 16th 2024 at 00:00

[local] LaborOfficeFree 19.10 - MySQL Root Password Calculator

LaborOfficeFree 19.10 - MySQL Root Password Calculator
  • March 16th 2024 at 00:00

[webapps] UPS Network Management Card 4 - Path Traversal

UPS Network Management Card 4 - Path Traversal
  • March 16th 2024 at 00:00

[local] vm2 - sandbox escape

vm2 - sandbox escape
  • March 16th 2024 at 00:00

[webapps] Nokia BMC Log Scanner - Remote Code Execution

Nokia BMC Log Scanner - Remote Code Execution
  • March 16th 2024 at 00:00

[remote] Viessmann Vitogate 300 2.1.3.0 - Remote Code Execution (RCE)

Viessmann Vitogate 300 2.1.3.0 - Remote Code Execution (RCE)
  • March 14th 2024 at 00:00

[local] KiTTY 0.76.1.13 - 'Start Duplicated Session Username' Buffer Overflow

KiTTY 0.76.1.13 - 'Start Duplicated Session Username' Buffer Overflow
  • March 14th 2024 at 00:00

[remote] JetBrains TeamCity 2023.05.3 - Remote Code Execution (RCE)

JetBrains TeamCity 2023.05.3 - Remote Code Execution (RCE)
  • March 14th 2024 at 00:00

[local] KiTTY 0.76.1.13 - 'Start Duplicated Session Hostname' Buffer Overflow

KiTTY 0.76.1.13 - 'Start Duplicated Session Hostname' Buffer Overflow
  • March 14th 2024 at 00:00

[remote] Ruijie Switch PSG-5124 26293 - Remote Code Execution (RCE)

Ruijie Switch PSG-5124 26293 - Remote Code Execution (RCE)
  • March 14th 2024 at 00:00

[local] KiTTY 0.76.1.13 - Command Injection

KiTTY 0.76.1.13 - Command Injection
  • March 14th 2024 at 00:00

[remote] SolarView Compact 6.00 - Command Injection

SolarView Compact 6.00 - Command Injection
  • March 14th 2024 at 00:00

[remote] VMware Cloud Director 10.5 - Bypass identity verification

VMware Cloud Director 10.5 - Bypass identity verification
  • March 12th 2024 at 00:00

[webapps] OSGi v3.8-3.18 Console - RCE

OSGi v3.8-3.18 Console - RCE
  • March 12th 2024 at 00:00

[webapps] SnipeIT 6.2.1 - Stored Cross Site Scripting

SnipeIT 6.2.1 - Stored Cross Site Scripting
  • March 12th 2024 at 00:00

[webapps] Client Details System 1.0 - SQL Injection

Client Details System 1.0 - SQL Injection
  • March 12th 2024 at 00:00
โŒ