Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

User Registration And Login And User Management System 3.0 Cross Site Scripting

0
Authored by Ashutosh Singh Umath User Registration and Login and User Management System version 3.0 suffers from a persistent cross site scripting vulnerability. Change Mirror Download # Exploit Title: User Registration &...

GraceHRM 1.0.3 Directory Traversal

0
Authored by indoushka GraceHRM version 1.0.3 suffers from a directory traversal vulnerability. Change Mirror Download ====================================================================================================================================| # Title : GraceHRM v1.0.3 Directory traversal Vulnerability ...

Geeklog 2.1.0b1 SQL Injection

0
Authored by indoushka Geeklog version 2.1.0b1 suffers from a remote SQL injection vulnerability. Change Mirror Download ====================================================================================================================================| # Title : Geeklog v2.1.0b1 Sql Injection Vulnerability ...

SugarCRM 12.2.0 Shell Upload

0
Authored by EgiX | Site karmainsecurity.com SugarCRM versions 12.2.0 and below suffers from a multiple step remote shell upload vulnerability. advisories | CVE-2023-35808 Change Mirror Download -----------------------------------------------------------------SugarCRM <= 12.2.0 (Notes) Unrestricted File Upload...

SugarCRM 12.2.0 Bean Manipulation

0
Authored by EgiX | Site karmainsecurity.com SugarCRM versions 12.2.0 suffer from a bean manipulation vulnerability that can allow for privilege escalation. advisories | CVE-2023-35809 Change Mirror Download ------------------------------------------------------------------------SugarCRM <= 12.2.0 (updateGeocodeStatus) Bean Manipulation...

SugarCRM 12.2.0 PHP Object Injection

0
Authored by EgiX | Site karmainsecurity.com SugarCRM versions 12.2.0 and below suffer from a PHP object injection vulnerability. advisories | CVE-2023-35810 Change Mirror Download -------------------------------------------------------------------------------SugarCRM <= 12.2.0 (Docusign_GlobalSettings) PHP Object Injection Vulnerability------------------------------------------------------------------------------- Software...

SugarCRM 12.2.0 SQL Injection

0
Authored by EgiX | Site karmainsecurity.com SugarCRM versions 12.2.0 and below suffer from multiple remote SQL injection vulnerabilities. advisories | CVE-2023-35811 Change Mirror Download ----------------------------------------------------SugarCRM <= 12.2.0 Two SQL Injection Vulnerabilities---------------------------------------------------- Software Link:https://www.sugarcrm.com...

CrafterCMS 4.0.2 Cross Site Scripting

0
Authored by EgiX | Site karmainsecurity.com CrafterCMS versions 4.0.2 and below suffer from multiple cross site scripting vulnerabilities. advisories | CVE-2023-4136 Change Mirror Download ---------------------------------------------------------------------------CrafterCMS <= 4.0.2 Multiple Reflected Cross-Site Scripting Vulnerabilities--------------------------------------------------------------------------- Software...

TSPlus 16.0.2.14 Insecure Permissions

0
Authored by Carlo Di Dato TSPlus version 16.0.2.14 suffers from an insecure permissions vulnerability. advisories | CVE-2023-31067 Change Mirror Download # Exploit Title: TSplus 16.0.2.14 - Remote Access Insecure Files and Folders Permissions#...

WordPress Charitable Donations Plugin And Fundraising Platform 1.7.0.12 Privilege Escalation

0
Authored by Lana Codes | Site wordfence.com WordPress Charitable Donations Plugin and Fundraising Platform versions 1.7.0.12 and below suffer from a privilege escalation vulnerability. advisories | CVE-2023-4404 Change Mirror Download Description: Donation Forms...