Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

WordPress Unyson 2.7.28 Backup Disclosure

Authored by indoushka WordPress Unyson plugin version 2.7.28 appears to leave backups in a world accessible directory under the document root. Change Mirror Download ====================================================================================================================================| # Title :...

Simple Library Management System 1.0 SQL Injection

0
Authored by Halit Akaydin Simple Library Management System version 1.0 suffers from a remote SQL injection vulnerability. Change Mirror Download # Exploit Title: Simple Library Management System 1.0 - 'rollno' SQL Injection#...

TitanNit Web Control 2.01 / Atemio 7600 Root Remote Command Execution

0
Authored by LiquidWorm | Site zeroscience.mk The Atemio AM 520 HD Full HD satellite receiver has a vulnerability that enables an unauthorized attacker to execute system commands with elevated privileges....

Visual Planning 8 Authentication Bypass

Authored by David Brown, Lennert Preuth | Site schutzwerk.com Unauthenticated attackers can exploit a weakness in the password reset functionality of the Visual Planning application in order to obtain access...

Kramer VIAware 2.5.0719.1034 Remote Code Execution

0
Authored by BallO, sharkmoos Kramer VIAware version 2.5.0719.1034 suffers from a remote code execution vulnerability. advisories | CVE-2019-17124 Change Mirror Download # Exploit Title: Kramer VIAware 2.5.0719.1034 - Remote Code Execution (RCE)# Date:...

WordPress Watu Quiz 3.3.9 / GN Publisher 1.5.5 / Japanized For WooComerce 2.5.4 XSS

0
Authored by Marco Wotschka | Site wordfence.com WordPress plugins Watu Quiz versions 3.3.9 and below, GN Publisher versions 1.5.5 and below, and Japanized For WooCommerce versions 2.5.4 and below suffer...

Windows Kernel Dangling Registry Link Node Use-After-Free

0
Authored by Google Security Research, mjurczyk The Microsoft Windows kernel suffers from a use-after-free vulnerability due to a dangling registry link node under paged pool memory pressure. advisories | CVE-2023-21747

WordPress / Joomla JReviews 4.1.5 Cross Site Scripting

0
Authored by CraCkEr WordPress / Joomla JReviews extension version 4.1.5 suffers from a cross site scripting vulnerability. Change Mirror Download ┌┌───────────────────────────────────────────────────────────────────────────────────────┐││ ...

BloodBank 1.0 Insecure Direct Object Reference

Authored by indoushka BloodBank version 1.0 suffers from an insecure direct object reference vulnerability. Change Mirror Download ======================================================================================================================================| # Title : BloodBank v1.0 - Blood Donor Directory CMS...

Joomla SIGE 3.4.1-FREE / 3.5.3-PRO RFI / Cross Site Scripting

0
Authored by h4shur Joomla Simple Image Gallery Extended (SIGE) extension versions 3.4.1-FREE and 3.5.3-PRO suffer from cross site scripting and remote file inclusion vulnerabilities. Change Mirror Download # Title: SIGE - Simple...
Error decoding the Instagram API json