Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Microsoft Windows Deployment Services Unattend Retrieval

0
Authored by Jay Turla | Site metasploit.com This Metasploit module retrieves the client unattend file from Windows Deployment Services RPC service and parses out the stored credentials. Tested against Windows...

WordPress GiveWP Donation / Fundraising Platform 3.14.1 Code Execution

0
Authored by Julien Ahrens, Valentin Lobstein, EQSTSeminar, Villu Orav | Site metasploit.com The GiveWP Donation plugin and Fundraising Platform plugin for WordPress in all versions up to and including 3.14.1...

pgAdmin 8.4 Remote Code Execution

0
Authored by M.Selim Karahan, Ayoub Mokhtar, Mustafa Mutlu | Site metasploit.com pgAdmin versions 8.4 and below are affected by a remote code execution vulnerability through the validate binary path API....

WordPress WP Event Manager 3.1.44 Cross Site Scripting

0
Authored by indoushka WordPress WP Event Manager plugin version 3.1.44 suffers from a cross site scripting vulnerability. Change Mirror Download =============================================================================================================================================| # Title : WordPress WP Event Manager...

WordPress SeatReg 1.54.0 Open Redirection

0
Authored by indoushka WordPress SeatReg plugin version 1.54.0 suffers from an open redirection vulnerability. Change Mirror Download =============================================================================================================================================| # Title : WordPress SeatReg plugin 1.54.0 open redirection Vulnerability...

WordPress GetYourGuide Ticketing 1.0.6 Cross Site Scripting

0
Authored by indoushka WordPress GetYourGuide Ticketing plugin version 1.0.6 suffers from a cross site scripting vulnerability. Change Mirror Download =============================================================================================================================================| # Title : WordPress GetYourGuide Ticketing plugin 1.0.6...

SPIP 4.2.6 Code Execution

0
Authored by indoushka SPIP version 4.2.6 suffers from a code execution vulnerability. Change Mirror Download =============================================================================================================================================| # Title : SPIP 4.2.6 PHP Code execution Vulnerability ...

Webpay E-Commerce 1.0 Directory Traversal

0
Authored by indoushka Webpay E-Commerce version 1.0 suffers from a directory traversal vulnerability. Change Mirror Download =============================================================================================================================================| # Title : Webpay E-Commerce v1.0 Directory traversal Vulnerability ...

Water Billing Management System 1.0 Cross Site Request Forgery / File Upload

0
Authored by indoushka Water Billing Management System version 1.0 suffers from a cross site request forgery that enables an arbitrary file upload. Change Mirror Download =============================================================================================================================================| # Title ...

Cacti Arbitrary File Write / Remote Code Execution

0
Authored by StopThatTalace | Site github.com Cacti versions prior to 1.2.27 suffer from an arbitrary file write vulnerability that allows for remote code execution. advisories | CVE-2024-25641