FreshRSS

๐Ÿ”’
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] TP-Link Tapo c200 1.1.15 - Remote Code Execution (RCE)

September 23rd 2022 at 00:00
TP-Link Tapo c200 1.1.15 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Testa 3.5.1 Online Test Management System - Reflected Cross-Site Scripting (XSS)

September 23rd 2022 at 00:00
Testa 3.5.1 Online Test Management System - Reflected Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Aero CMS v0.0.1 - SQLi

September 23rd 2022 at 00:00
Aero CMS v0.0.1 - SQLi
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Feehi CMS 2.1.1 - Remote Code Execution (Authenticated)

September 23rd 2022 at 00:00
Feehi CMS 2.1.1 - Remote Code Execution (Authenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Wordpress Plugin 3dady real-time web stats 1.0 - Stored Cross Site Scripting (XSS)

September 23rd 2022 at 00:00
Wordpress Plugin 3dady real-time web stats 1.0 - Stored Cross Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Wordpress Plugin WP-UserOnline 2.88.0 - Stored Cross Site Scripting (XSS)

September 23rd 2022 at 00:00
Wordpress Plugin WP-UserOnline 2.88.0 - Stored Cross Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Teleport v10.1.1 - Remote Code Execution (RCE)

September 23rd 2022 at 00:00
Teleport v10.1.1 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Wifi HD Wireless Disk Drive 11 - Local File Inclusion

September 21st 2022 at 00:00
Wifi HD Wireless Disk Drive 11 - Local File Inclusion
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] WiFiMouse 1.8.3.4 - Remote Code Execution (RCE)

September 21st 2022 at 00:00
WiFiMouse 1.8.3.4 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Blink1Control2 2.2.7 - Weak Password Encryption

September 20th 2022 at 00:00
Blink1Control2 2.2.7 - Weak Password Encryption
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Buffalo TeraStation Network Attached Storage (NAS) 1.66 - Authentication Bypass

September 20th 2022 at 00:00
Buffalo TeraStation Network Attached Storage (NAS) 1.66 - Authentication Bypass
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Airspan AirSpot 5410 version 0.3.4.1 - Remote Code Execution (RCE)

September 20th 2022 at 00:00
Airspan AirSpot 5410 version 0.3.4.1 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Bookwyrm v0.4.3 - Authentication Bypass

September 20th 2022 at 00:00
Bookwyrm v0.4.3 - Authentication Bypass
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Mobile Mouse 3.6.0.4 - Remote Code Execution (RCE)

September 20th 2022 at 00:00
Mobile Mouse 3.6.0.4 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Gitea 1.16.6 - Remote Code Execution (RCE) (Metasploit)

September 15th 2022 at 00:00
Gitea 1.16.6 - Remote Code Execution (RCE) (Metasploit)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WordPress Plugin Testimonial Slider and Showcase 2.2.6 - Stored Cross-Site Scripting (XSS)

September 2nd 2022 at 00:00
WordPress Plugin Testimonial Slider and Showcase 2.2.6 - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Sophos XG115w Firewall 17.0.10 MR-10 - Authentication Bypass

September 2nd 2022 at 00:00
Sophos XG115w Firewall 17.0.10 MR-10 - Authentication Bypass
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WordPress Plugin Netroics Blog Posts Grid 1.0 - Stored Cross-Site Scripting (XSS)

September 2nd 2022 at 00:00
WordPress Plugin Netroics Blog Posts Grid 1.0 - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] ThingsBoard 3.3.1 'name' - Stored Cross-Site Scripting (XSS)

August 9th 2022 at 00:00
ThingsBoard 3.3.1 'name' - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Feehi CMS 2.1.1 - Stored Cross-Site Scripting (XSS)

August 9th 2022 at 00:00
Feehi CMS 2.1.1 - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Prestashop blockwishlist module 2.1.0 - SQLi

August 9th 2022 at 00:00
Prestashop blockwishlist module 2.1.0 - SQLi
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] ThingsBoard 3.3.1 'description' - Stored Cross-Site Scripting (XSS)

August 9th 2022 at 00:00
ThingsBoard 3.3.1 'description' - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] PAN-OS 10.0 - Remote Code Execution (RCE) (Authenticated)

August 9th 2022 at 00:00
PAN-OS 10.0 - Remote Code Execution (RCE) (Authenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] uftpd 2.10 - Directory Traversal (Authenticated)

August 2nd 2022 at 00:00
uftpd 2.10 - Directory Traversal (Authenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] NanoCMS v0.4 - Remote Code Execution (RCE) (Authenticated)

August 1st 2022 at 00:00
NanoCMS v0.4 - Remote Code Execution (RCE) (Authenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WordPress Plugin Duplicator 1.4.7 - Information Disclosure

August 1st 2022 at 00:00
WordPress Plugin Duplicator 1.4.7 - Information Disclosure
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WordPress Plugin Duplicator 1.4.6 - Unauthenticated Backup Download

August 1st 2022 at 00:00
WordPress Plugin Duplicator 1.4.6 - Unauthenticated Backup Download
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Webmin 1.996 - Remote Code Execution (RCE) (Authenticated)

August 1st 2022 at 00:00
Webmin 1.996 - Remote Code Execution (RCE) (Authenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Omnia MPX 1.5.0+r1 - Path Traversal

August 1st 2022 at 00:00
Omnia MPX 1.5.0+r1 - Path Traversal
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Wavlink WN530HG4 - Password Disclosure

August 1st 2022 at 00:00
Wavlink WN530HG4 - Password Disclosure
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Easy Chat Server 3.1 - Remote Stack Buffer Overflow (SEH)

August 1st 2022 at 00:00
Easy Chat Server 3.1 - Remote Stack Buffer Overflow (SEH)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Wavlink WN533A8 - Password Disclosure

August 1st 2022 at 00:00
Wavlink WN533A8 - Password Disclosure
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] mPDF 7.0 - Local File Inclusion

August 1st 2022 at 00:00
mPDF 7.0 - Local File Inclusion
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Wavlink WN533A8 - Cross-Site Scripting (XSS)

August 1st 2022 at 00:00
Wavlink WN533A8 - Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] CuteEditor for PHP 6.6 - Directory Traversal

August 1st 2022 at 00:00
CuteEditor for PHP 6.6 - Directory Traversal
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] rpc.py 0.6.0 - Remote Code Execution (RCE)

July 29th 2022 at 00:00
rpc.py 0.6.0 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WordPress Plugin WP-UserOnline 2.87.6 - Stored Cross-Site Scripting (XSS)

July 29th 2022 at 00:00
WordPress Plugin WP-UserOnline 2.87.6 - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Geonetwork 4.2.0 - XML External Entity (XXE)

July 29th 2022 at 00:00
Geonetwork 4.2.0 - XML External Entity (XXE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Schneider Electric SpaceLogic C-Bus Home Controller (5200WHC2) - Remote Code Execution

July 29th 2022 at 00:00
Schneider Electric SpaceLogic C-Bus Home Controller (5200WHC2) - Remote Code Execution
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Carel pCOWeb HVAC BACnet Gateway 2.1.0 - Directory Traversal

July 29th 2022 at 00:00
Carel pCOWeb HVAC BACnet Gateway 2.1.0 - Directory Traversal
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Asus GameSDK v1.0.0.4 - 'GameSDK.exe' Unquoted Service Path

July 29th 2022 at 00:00
Asus GameSDK v1.0.0.4 - 'GameSDK.exe' Unquoted Service Path
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Dingtian-DT-R002 3.1.276A - Authentication Bypass

July 29th 2022 at 00:00
Dingtian-DT-R002 3.1.276A - Authentication Bypass
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WordPress Plugin Visual Slide Box Builder 3.2.9 - SQLi

July 26th 2022 at 00:00
WordPress Plugin Visual Slide Box Builder 3.2.9 - SQLi
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] OctoBot WebInterface 0.4.3 - Remote Code Execution (RCE)

July 21st 2022 at 00:00
OctoBot WebInterface 0.4.3 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] CodoForum v5.1 - Remote Code Execution (RCE)

July 21st 2022 at 00:00
CodoForum v5.1 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] IOTransfer 4.0 - Remote Code Execution (RCE)

July 21st 2022 at 00:00
IOTransfer 4.0 - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Magnolia CMS 6.2.19 - Stored Cross-Site Scripting (XSS)

July 21st 2022 at 00:00
Magnolia CMS 6.2.19 - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Dr. Fone 4.0.8 - 'net_updater32.exe' Unquoted Service Path

July 21st 2022 at 00:00
Dr. Fone 4.0.8 - 'net_updater32.exe' Unquoted Service Path
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Kite 1.2021.610.0 - Unquoted Service Path

July 21st 2022 at 00:00
Kite 1.2021.610.0 - Unquoted Service Path
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Nginx 1.20.0 - Denial of Service (DOS)

July 11th 2022 at 00:00
Nginx 1.20.0 - Denial of Service (DOS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] WiFi Mouse 1.7.8.5 - Remote Code Execution(v2)

July 1st 2022 at 00:00
WiFi Mouse 1.7.8.5 - Remote Code Execution(v2)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Mailhog 1.0.1 - Stored Cross-Site Scripting (XSS)

June 27th 2022 at 00:00
Mailhog 1.0.1 - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WSO2 Management Console (Multiple Products) - Unauthenticated Reflected Cross-Site Scripting (XSS)

June 27th 2022 at 00:00
WSO2 Management Console (Multiple Products) - Unauthenticated Reflected Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WordPress Plugin Weblizar 8.9 - Backdoor

June 27th 2022 at 00:00
WordPress Plugin Weblizar 8.9 - Backdoor
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Pandora FMS v7.0NG.742 - Remote Code Execution (RCE) (Authenticated)

June 14th 2022 at 00:00
Pandora FMS v7.0NG.742 - Remote Code Execution (RCE) (Authenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] SolarView Compact 6.00 - 'time_begin' Cross-Site Scripting (XSS)

June 14th 2022 at 00:00
SolarView Compact 6.00 - 'time_begin' Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Virtua Software Cobranca 12S - SQLi

June 14th 2022 at 00:00
Virtua Software Cobranca 12S - SQLi
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Avantune Genialcloud ProJ 10 - Cross-Site Scripting (XSS)

June 14th 2022 at 00:00
Avantune Genialcloud ProJ 10 - Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Real Player 16.0.3.51 - 'external::Import()' Directory Traversal to Remote Code Execution (RCE)

June 14th 2022 at 00:00
Real Player 16.0.3.51 - 'external::Import()' Directory Traversal to Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] SolarView Compact 6.00 - 'pow' Cross-Site Scripting (XSS)

June 14th 2022 at 00:00
SolarView Compact 6.00 - 'pow' Cross-Site Scripting (XSS)
โŒ