Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Lot Reservation Management System 1.0 File Disclosure

0
Authored by Elijah Mandila Syoyi Lot Reservation Management System version 1.0 suffers from a file disclosure vulnerability. Change Mirror Download # Exploit Title: Lot Reservation Management System Unauthenticated File Disclosure Vulnerability# Google...

Lot Reservation Management System 1.0 Shell Upload

0
Authored by Elijah Mandila Syoyi Lot Reservation Management System version 1.0 suffers from a remote shell upload vulnerability. Change Mirror Download # Exploit Title: Lot Reservation Management System Unauthenticated File Upload and...

Microsoft Windows PowerShell Code Execution / Event Log Bypass

0
Authored by hyp3rlinx | Site hyp3rlinx.altervista.org Prior work from this researcher disclosed how PowerShell executes unintended files or BASE64 code when processing specially crafted filenames. This research builds on their...

GilaCMS 1.15.4 SQL Injection

0
Authored by Louise Ng, Chris Chan GilaCMS versions 1.15.4 and below suffer from multiple remote SQL injection vulnerabilities. advisories | CVE-2020-26623, CVE-2020-26624, CVE-2020-26625 Change Mirror Download Description: GilaCMS <=1.15.4 - Mutiple SQL injection...

Hospital Management System 4.0 XSS / Shell Upload / SQL Injection

0
Authored by Louise Ng, Chris Chan Hospital Management System versions 4.0 and below suffer from cross site scripting, remote shell upload, and remote SQL injection vulnerabilities. advisories | CVE-2020-26627, CVE-2020-26628, CVE-2020-26629,...

FreeSWITCH 1.10.10 Denial Of Service

0
Authored by Sandro Gauci | Site enablesecurity.com When handling DTLS-SRTP for media setup, FreeSWITCH version 1.10.10 is susceptible to denial of service due to a race condition in the hello...

ShopSite 14.0 Cross Site Scripting

0
Authored by tmrswrr ShopSite version 14.0 suffers from a persistent cross site scripting vulnerability. Change Mirror Download # Exploit Title: ShopSite Version: 14.0 - Stored XSS# Date: 2023-12-25# Exploit Author: tmrswrr# Category...

WhatACart 2.0.7 Cross Site Scripting

0
Authored by tmrswrr WhatACart version 2.0.7 suffers from a cross site scripting vulnerability. Change Mirror Download # Exploit Title: WhatACart Version: 2.0.7 - Reflected XSS# Date: 2023-12-27# Exploit Author: tmrswrr# Category :...

TYPO3 11.5.24 Path Traversal

0
Authored by Saeed reza Zamanian TYPO3 version 11.5.24 suffers from a path traversal vulnerability. advisories | CVE-2023-30451 Change Mirror Download # Exploit Title: TYPO3 11.5.24 Path Traversal Vulnerability (Authenticated)# Date: Apr 9, 2023#...

MOKOSmart MKGW1 Gateway Improper Session Management

0
Authored by David Gnedt, Jakob Hagl | Site sba-research.org MOKOSmart MKGW1 Gateway devices with firmware version 1.1.1 or below do not provide an adequate session management for the administrative web...