FreshRSS

๐Ÿ”’
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Windows 10 v21H1 - HTTP Protocol Stack Remote Code Execution

July 7th 2023 at 00:00
Windows 10 v21H1 - HTTP Protocol Stack Remote Code Execution
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft Outlook Microsoft 365 MSO (Version 2306 Build 16.0.16529.20100) 32-bit - Remote Code Execution

July 7th 2023 at 00:00
Microsoft Outlook Microsoft 365 MSO (Version 2306 Build 16.0.16529.20100) 32-bit - Remote Code Execution
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Faculty Evaluation System v1.0 - SQL Injection

July 7th 2023 at 00:00
Faculty Evaluation System v1.0 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Lost and Found Information System v1.0 - SQL Injection

July 6th 2023 at 00:00
Lost and Found Information System v1.0 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Gila CMS 1.10.9 - Remote Code Execution (RCE) (Authenticated)

July 6th 2023 at 00:00
Gila CMS 1.10.9 - Remote Code Execution (RCE) (Authenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Piwigo v13.7.0 - Stored Cross-Site Scripting (XSS) (Authenticated)

July 6th 2023 at 00:00
Piwigo v13.7.0 - Stored Cross-Site Scripting (XSS) (Authenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Car Rental Script 1.8 - Stored Cross-site scripting (XSS)

July 4th 2023 at 00:00
Car Rental Script 1.8 - Stored Cross-site scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Beauty Salon Management System v1.0 - SQLi

July 4th 2023 at 00:00
Beauty Salon Management System v1.0 - SQLi
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] GZ Forum Script 1.8 - Stored Cross-Site Scripting (XSS)

July 3rd 2023 at 00:00
GZ Forum Script 1.8 - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Vacation Rental 1.8 - Stored Cross-Site Scripting (XSS)

July 3rd 2023 at 00:00
Vacation Rental 1.8 - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] FuguHub 8.1 - Remote Code Execution

July 3rd 2023 at 00:00
FuguHub 8.1 - Remote Code Execution
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WebsiteBaker v2.13.3 - Stored XSS

July 3rd 2023 at 00:00
WebsiteBaker v2.13.3 - Stored XSS
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Sales of Cashier Goods v1.0 - Cross Site Scripting (XSS)

July 3rd 2023 at 00:00
Sales of Cashier Goods v1.0 - Cross Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] D-Link DAP-1325 - Broken Access Control

July 3rd 2023 at 00:00
D-Link DAP-1325 - Broken Access Control
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WP AutoComplete 1.0.4 - Unauthenticated SQLi

July 3rd 2023 at 00:00
WP AutoComplete 1.0.4 - Unauthenticated SQLi
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WebsiteBaker v2.13.3 - Directory Traversal

July 3rd 2023 at 00:00
WebsiteBaker v2.13.3 - Directory Traversal
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WBCE CMS 1.6.1 - Open Redirect & CSRF

July 3rd 2023 at 00:00
WBCE CMS 1.6.1 - Open Redirect & CSRF
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] spip v4.1.10 - Spoofing Admin account

July 3rd 2023 at 00:00
spip v4.1.10 - Spoofing Admin account
โ˜ โ˜† โœ‡ Exploit-DB Updates

[dos] TP-Link TL-WR940N V4 - Buffer OverFlow

July 3rd 2023 at 00:00
TP-Link TL-WR940N V4 - Buffer OverFlow
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Alkacon OpenCMS 15.0 - Multiple Cross-Site Scripting (XSS)

July 3rd 2023 at 00:00
Alkacon OpenCMS 15.0 - Multiple Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Rukovoditel 3.4.1 - Multiple Stored XSS

July 3rd 2023 at 00:00
Rukovoditel 3.4.1 - Multiple Stored XSS
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft 365 MSO (Version 2305 Build 16.0.16501.20074) 32-bit - Remote Code Execution (RCE)

July 3rd 2023 at 00:00
Microsoft 365 MSO (Version 2305 Build 16.0.16501.20074) 32-bit - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft 365 MSO (Version 2305 Build 16.0.16501.20074) 64-bit - Remote Code Execution (RCE)

July 3rd 2023 at 00:00
Microsoft 365 MSO (Version 2305 Build 16.0.16501.20074) 64-bit - Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Time Slot Booking Calendar 1.8 - Stored Cross-Site Scripting (XSS)

July 3rd 2023 at 00:00
Time Slot Booking Calendar 1.8 - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Prestashop 8.0.4 - Cross-Site Scripting (XSS)

July 3rd 2023 at 00:00
Prestashop 8.0.4 - Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] PodcastGenerator 3.2.9 - Blind SSRF via XML Injection

July 3rd 2023 at 00:00
PodcastGenerator 3.2.9 - Blind SSRF via XML Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] POS Codekop v2.0 - Authenticated Remote Code Execution (RCE)

July 3rd 2023 at 00:00
POS Codekop v2.0 - Authenticated Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] Windows 11 22h2 - Kernel Privilege Elevation

June 26th 2023 at 00:00
Windows 11 22h2 - Kernel Privilege Elevation
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Microsoft SharePoint Enterprise Server 2016 - Spoofing

June 26th 2023 at 00:00
Microsoft SharePoint Enterprise Server 2016 - Spoofing
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Xenforo Version 2.2.13 - Authenticated Stored XSS

June 26th 2023 at 00:00
Xenforo Version 2.2.13 - Authenticated Stored XSS
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Azure Apache Ambari 2302250400 - Spoofing

June 26th 2023 at 00:00
Azure Apache Ambari 2302250400 - Spoofing
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] PrestaShop Winbiz Payment module - Improper Limitation of a Pathname to a Restricted Directory

June 26th 2023 at 00:00
PrestaShop Winbiz Payment module - Improper Limitation of a Pathname to a Restricted Directory
โ˜ โ˜† โœ‡ Exploit-DB Updates

[local] NCH Express Invoice - Clear Text Password Storage and Account Takeover

June 23rd 2023 at 00:00
NCH Express Invoice - Clear Text Password Storage and Account Takeover
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] MCL-Net 4.3.5.8788 - Information Disclosure

June 23rd 2023 at 00:00
MCL-Net 4.3.5.8788 - Information Disclosure
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Smart Office Web 20.28 - Remote Information Disclosure (Unauthenticated)

June 22nd 2023 at 00:00
Smart Office Web 20.28 - Remote Information Disclosure (Unauthenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Microsoft OneNote (Version 2305 Build 16.0.16501.20074) 64-bit - Spoofing

June 22nd 2023 at 00:00
Microsoft OneNote (Version 2305 Build 16.0.16501.20074) 64-bit - Spoofing
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] HiSecOS 04.0.01 - Privilege Escalation

June 21st 2023 at 00:00
HiSecOS 04.0.01 - Privilege Escalation
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Super Socializer 7.13.52 - Reflected XSS

June 20th 2023 at 00:00
Super Socializer 7.13.52 - Reflected XSS
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WP Sticky Social 1.0.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting (XSS)

June 20th 2023 at 00:00
WP Sticky Social 1.0.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] SPIP v4.2.0 - Remote Code Execution (Unauthenticated)

June 20th 2023 at 00:00
SPIP v4.2.0 - Remote Code Execution (Unauthenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Nokia ASIKA 7.13.52 - Hard-coded private key disclosure

June 20th 2023 at 00:00
Nokia ASIKA 7.13.52 - Hard-coded private key disclosure
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Symantec SiteMinder WebAgent v12.52 - Cross-site scripting (XSS)

June 19th 2023 at 00:00
Symantec SiteMinder WebAgent v12.52 - Cross-site scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Student Study Center Management System v1.0 - Stored Cross-Site Scripting (XSS)

June 19th 2023 at 00:00
Student Study Center Management System v1.0 - Stored Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] The Shop v2.5 - SQL Injection

June 19th 2023 at 00:00
The Shop v2.5 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Jobpilot v2.61 - SQL Injection

June 19th 2023 at 00:00
Jobpilot v2.61 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Diafan CMS 6.0 - Reflected Cross-Site Scripting (XSS)

June 19th 2023 at 00:00
Diafan CMS 6.0 - Reflected Cross-Site Scripting (XSS)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Groomify v1.0 - SQL Injection

June 19th 2023 at 00:00
Groomify v1.0 - SQL Injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] WordPress Theme Medic v1.0.0 - Weak Password Recovery Mechanism for Forgotten Password

June 19th 2023 at 00:00
WordPress Theme Medic v1.0.0 - Weak Password Recovery Mechanism for Forgotten Password
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Online Art gallery project 1.0 - Arbitrary File Upload (Unauthenticated)

June 15th 2023 at 00:00
Online Art gallery project 1.0 - Arbitrary File Upload (Unauthenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE)

June 14th 2023 at 00:00
PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Textpattern CMS v4.8.8 - Stored Cross-Site Scripting (XSS) (Authenticated)

June 14th 2023 at 00:00
Textpattern CMS v4.8.8 - Stored Cross-Site Scripting (XSS) (Authenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Xoops CMS 2.5.10 - Stored Cross-Site Scripting (XSS) (Authenticated)

June 14th 2023 at 00:00
Xoops CMS 2.5.10 - Stored Cross-Site Scripting (XSS) (Authenticated)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] projectSend r1605 - Stored XSS

June 14th 2023 at 00:00
projectSend r1605 - Stored XSS
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Online Thesis Archiving System v1.0 - Multiple-SQLi

June 14th 2023 at 00:00
Online Thesis Archiving System v1.0 - Multiple-SQLi
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Anevia Flamingo XL 3.2.9 - Remote Root Jailbreak

June 14th 2023 at 00:00
Anevia Flamingo XL 3.2.9 - Remote Root Jailbreak
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] projectSend r1605 - CSV injection

June 14th 2023 at 00:00
projectSend r1605 - CSV injection
โ˜ โ˜† โœ‡ Exploit-DB Updates

[remote] Anevia Flamingo XS 3.6.5 - Authenticated Root Remote Code Execution

June 14th 2023 at 00:00
Anevia Flamingo XS 3.6.5 - Authenticated Root Remote Code Execution
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE)

June 14th 2023 at 00:00
PyLoad 0.5.0 - Pre-auth Remote Code Execution (RCE)
โ˜ โ˜† โœ‡ Exploit-DB Updates

[webapps] Monstra 3.0.4 - Stored Cross-Site Scripting (XSS)

June 14th 2023 at 00:00
Monstra 3.0.4 - Stored Cross-Site Scripting (XSS)
โŒ