Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

PHPJabbers Appointment Scheduler 3.0 HTML Injection

0
Authored by Rahad Chowdhury, BugsBD Limited PHPJabbers Appointment Scheduler version 3.0 suffers from multiple html injection vulnerabilities. advisories | CVE-2023-48838 Change Mirror Download # Exploit Title: PHPJabbers Appointment Scheduler v3.0 - Multiple HTML...

PHPJabbers Appointment Scheduler 3.0 Cross Site Scripting

0
Authored by Rahad Chowdhury, BugsBD Limited PHPJabbers Appointment Scheduler version 3.0 suffers from multiple persistent cross site scripting vulnerabilities. advisories | CVE-2023-48839 Change Mirror Download # Exploit Title: PHPJabbers Appointment Scheduler v3.0 -...

PHPJabbers Appointment Scheduler 3.0 Missing Rate Limiting

0
Authored by Rahad Chowdhury, BugsBD Limited PHPJabbers Appointment Scheduler version 3.0 suffers from a missing rate limiting control that can allow for resource exhaustion. advisories | CVE-2023-48840 Change Mirror Download # Exploit Title:...

PHPJabbers Appointment Scheduler 3.0 CSV Injection

0
Authored by Rahad Chowdhury, BugsBD Limited PHPJabbers Appointment Scheduler version 3.0 suffers from a CSV injection vulnerability. advisories | CVE-2023-48841 Change Mirror Download # Exploit Title: PHPJabbers Appointment Scheduler v3.0 - CSV Injection#...

TinyDir 1.2.5 Buffer Overflow

0
Authored by Marco Ivaldi | Site security.humanativaspa.it TinyDir versions 1.2.5 and below suffer from a buffer overflow vulnerability with long path names. advisories | CVE-2023-49287 Change Mirror Download -- and identified somesecurity vulnerabilities...

Loytec LINX Configurator 7.4.10 Insecure Transit / Cleartext Secrets

0
Authored by Chizuru Toyama Loytec LINX Configurator version 7.4.10 suffers from insecure transit and cleartext hardcoded secret vulnerabilities. advisories | CVE-2023-46383, CVE-2023-46384, CVE-2023-46385 Change Mirror Download CVE ...

Loytec L-INX Automation Servers Information Disclosure / Cleartext Secrets

0
Authored by Chizuru Toyama Loytec LINX-151 with firmware version 7.2.4 and LINX-212 with firmware version 6.2.4 suffer from file disclosure vulnerabilities that leak secrets as well as issues with stories...

etcd-browser 87ae63d75260 Directory Traversal

0
Authored by Kevin Randall etcd-browser version 87ae63d75260 suffers from a directory traversal vulnerability. Change Mirror Download An issue was discovered in server.js in etcd-browser 87ae63d75260. Bysupplying a /../../../ Directory Traversal input to...

Fortra Digital Guardian Agent Uninstaller Cross Site Scripting / UninstallKey Cached

0
Authored by Johannes Kruchem, Daniel Hirschberger, Bernhard Grundling | Site sec-consult.com The uninstaller in Fortra Digital Guardian Agent versions prior to 7.9.4 suffers from a cross site scripting vulnerability. Additionally,...

WordPress Royal Elementor Addons And Templates Remote Shell Upload

0
Authored by Valentin Lobstein, Fioravante Souza | Site metasploit.com WordPress Royal Elementor Addons and Templates plugin versions prior to 1.3.79 suffer from a remote shell upload vulnerability. advisories | CVE-2023-5360 Change Mirror...