Lot Reservation Management System 1.0 File Disclosure
Authored by Elijah Mandila Syoyi
Lot Reservation Management System version 1.0 suffers from a file disclosure vulnerability.
Change Mirror Download
# Exploit Title: Lot Reservation Management System Unauthenticated File Disclosure Vulnerability# Google...
Lot Reservation Management System 1.0 Shell Upload
Authored by Elijah Mandila Syoyi
Lot Reservation Management System version 1.0 suffers from a remote shell upload vulnerability.
Change Mirror Download
# Exploit Title: Lot Reservation Management System Unauthenticated File Upload and...
Microsoft Windows PowerShell Code Execution / Event Log Bypass
Authored by hyp3rlinx | Site hyp3rlinx.altervista.org
Prior work from this researcher disclosed how PowerShell executes unintended files or BASE64 code when processing specially crafted filenames. This research builds on their...
GilaCMS 1.15.4 SQL Injection
Authored by Louise Ng, Chris Chan
GilaCMS versions 1.15.4 and below suffer from multiple remote SQL injection vulnerabilities.
advisories | CVE-2020-26623, CVE-2020-26624, CVE-2020-26625
Change Mirror Download
Description: GilaCMS <=1.15.4 - Mutiple SQL injection...
Hospital Management System 4.0 XSS / Shell Upload / SQL Injection
Authored by Louise Ng, Chris Chan
Hospital Management System versions 4.0 and below suffer from cross site scripting, remote shell upload, and remote SQL injection vulnerabilities.
advisories | CVE-2020-26627, CVE-2020-26628, CVE-2020-26629,...
FreeSWITCH 1.10.10 Denial Of Service
Authored by Sandro Gauci | Site enablesecurity.com
When handling DTLS-SRTP for media setup, FreeSWITCH version 1.10.10 is susceptible to denial of service due to a race condition in the hello...
ShopSite 14.0 Cross Site Scripting
Authored by tmrswrr
ShopSite version 14.0 suffers from a persistent cross site scripting vulnerability.
Change Mirror Download
# Exploit Title: ShopSite Version: 14.0 - Stored XSS# Date: 2023-12-25# Exploit Author: tmrswrr# Category...
WhatACart 2.0.7 Cross Site Scripting
Authored by tmrswrr
WhatACart version 2.0.7 suffers from a cross site scripting vulnerability.
Change Mirror Download
# Exploit Title: WhatACart Version: 2.0.7 - Reflected XSS# Date: 2023-12-27# Exploit Author: tmrswrr# Category :...
TYPO3 11.5.24 Path Traversal
Authored by Saeed reza Zamanian
TYPO3 version 11.5.24 suffers from a path traversal vulnerability.
advisories | CVE-2023-30451
Change Mirror Download
# Exploit Title: TYPO3 11.5.24 Path Traversal Vulnerability (Authenticated)# Date: Apr 9, 2023#...
MOKOSmart MKGW1 Gateway Improper Session Management
Authored by David Gnedt, Jakob Hagl | Site sba-research.org
MOKOSmart MKGW1 Gateway devices with firmware version 1.1.1 or below do not provide an adequate session management for the administrative web...





