Exploits & CVE's

Exploits Database – Exploits, Shellcode, 0days, Remote Exploits, Local Exploits, Web Apps, Vulnerability Reports, CVEs and more.

Panel.SmokeLoader MVID-2024-0682 Cross Site Request Forgery / Cross Site Scripting

Authored by malvuln | Site malvuln.com Panel.SmokeLoader malware suffers from cross site request forgery, and cross site scripting vulnerabilities. Change Mirror Download Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2024Original...

Kemp LoadMaster Local sudo Privilege Escalation

Authored by bwatters-r7, Dave Yesland | Site metasploit.com This Metasploit module abuses a feature of the sudo command on Progress Kemp LoadMaster. Certain binary files are allowed to automatically elevate...

Prison Management System Using PHP SQL Injection

Authored by Sanjay Singh Prison Management System Using PHP suffers from a remote SQL injection vulnerability that allows for authentication bypass. advisories | CVE-2024-33288 Change Mirror Download # Exploit : Prison Management System...

Systemd Insecure PTY Handling

Authored by Adam Gowdiak | Site security-explorations.com Systemd-run/run0 allocates user-owned ptys and attaches the slave to high privilege programs without changing ownership or locking the pty slave. Change Mirror Download Systemd Insecure...

Drupal-Wiki 8.31 / 8.30 Cross Site Scripting

Authored by Simon Bieber | Site secuvera.de Drupal-Wiki versions 8.30 and 8.31 suffer from multiple persistent cross site scripting vulnerabilities. advisories | CVE-2024-34481 Change Mirror Download -----BEGIN PGP SIGNED MESSAGE-----Hash: SHA256secuvera-SA-2024-02: Multiple Persistent...

Kortex 1.0 SQL Injection

Authored by nu11secur1ty Kortex version 1.0 suffers from a remote SQL injection vulnerability. Change Mirror Download ## Titles: KORTEX-1.0 SQLi## Author: nu11secur1ty## Date: 05/09/2024## Vendor: https://mayurik.com/## Software:https://www.mayurik.com/source-code/P5339/best-free-law-office-management-software## Reference: https://portswigger.net/web-security/sql-injection## Description:The username parameter...

POMS PHP 1.0 SQL Injection / Shell Upload

Authored by nu11secur1ty POMS PHP version 1.0 suffers from remote shell upload and remote SQL injection vulnerabilities. Change Mirror Download ## Titles: POMS-PHP-(by oretnom23 )-v1.0-FU-SQLi-RCE-HAT.TRICK1. SQLi Bypass Authentication2. File Upload3. RCE## Latest...

iboss Secure Web Gateway Cross Site Scripting

Authored by modrnProph3t iboss Secure Web Gateway versions prior to 10.2.0 suffer from a persistent cross site scripting vulnerability. advisories | CVE-2024-3378 Change Mirror Download # Exploit Title: iboss Secure Web Gateway -...

Clinic Queuing System 1.0 Remote Code Execution

Authored by Juan Marco Sanchez Clinic Queuing System version 1.0 suffers from a remote code execution vulnerability. advisories | CVE-2024-0264, CVE-2024-0265 Change Mirror Download # Exploit Title: Clinic Queuing System 1.0 RCE #...

Panel Amadey.d.c MVID-2024-0680 Cross Site Scripting

Authored by malvuln | Site malvuln.com Panel Amadey.d.c malware suffers from cross site scripting vulnerabilities. Change Mirror Download Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2024Original source: https://malvuln.com/advisory/50467c891bf7de34d2d65fa93ab8b558.txtContact: [email protected]: twitter.com/malvulnThreat:...