Artworks Gallery Management System 1.0 SQL Injection
Authored by Vijay Sachdeva
Artworks Gallery Management System version 1.0 suffers from a remote SQL injection vulnerability.
Change Mirror Download
# Exploit Title: Artworks Gallery Management System 1.0 - 'id' SQL Injection#...
Android Studio Privilege Escalation
Authored by houjingyi
Android Studio has an issue where a malicious project can execute a custom cmd.exe allowing for privilege escalation. Google does not believe this is an issue.
Change Mirror...
CSE Bookstore 1.0 SQL Injection
Authored by Musyoka Ian
CSE Bookstore version 1.0 suffers from multiple remote SQL injection vulnerabilities. Original discovery of SQL injection in this version is attributed to Alper Basaran in October...
WordPress W3 Total Cache 0.9.3 File Read / Directory Traversal
Authored by SunCSR, Hoa Nguyen, VinhJAXT | Site metasploit.com
This Metasploit module exploits an unauthenticated directory traversal vulnerability in WordPress plugin W3 Total Cache version 0.9.2.6 through 0.9.3, allowing arbitrary...
Webmin 1.962 Remote Command Execution
Authored by AkkuS | Site metasploit.com
This Metasploit module exploits an arbitrary command execution vulnerability in Webmin 1.962 and lower versions. Any user authorized to the Package Updates module can...
Library Management System 3.0 Cross Site Scripting
Authored by Kislay Kumar
Library Management System version 3.0 suffers from a persistent cross site scripting vulnerability.
Change Mirror Download
# Exploit Title: Library Management System 3.0 - "Add Category" Stored...
Multi Branch School Management System 3.5 Cross Site Scripting
Authored by Kislay Kumar
Multi Branch School Management System version 3.5 suffers from a persistent cross site scripting vulnerability.
Change Mirror Download
# Exploit Title: Multi Branch School Management System 3.5 -...
Linux TIOCSPGRP Broken Locking
Authored by Jann Horn, Google Security Research
Linux suffers from broken locking in TIOCSPGRP that can lead to a corrupted refcount.
advisories | CVE-2020-29661
Change Mirror Download
Linux: Broken locking in TIOCSPGRP leads...
WordPress Contact Form 7 5.3.1 Shell Upload
Authored by Ramon Vila Ferreres
WordPress Contact Form 7 plugin version 5.3.1 suffers from a remote shell upload vulnerability.
Change Mirror Download
# Exploit Title: Wordpress Plugin Contact Form 7 5.3.1 -...
Spotweb 1.4.9 SQL Injection
Authored by BouSalman
Spotweb version 1.4.9 suffers from a remote SQL injection vulnerability. Related CVE number: CVE-2020-35545.
Change Mirror Download
# Exploit Title: Spotweb 1.4.9 - 'search' SQL Injection# Google Dork: N/A#...





