Home Tools Page 73

Tools

The latest hacking and hacker tools. Open source offensive and defensive security tools. Browse interactive maps of offensive security tools used by malicious actors and cybercriminals. Check out some live threat maps and malware intelligence databases.

This will be a curated list of mostly open source hacking tools. These can range from Red Teaming offensive security tools to fuzzers and debuggers for malware analysis. We are always looking for new state of the art tools that can be used for security professionals. Please feel free to send us a tool via email or one of our social media accounts.

GUnet OpenEclass E-learning 3.15 File Upload / Command Execution

0
Authored by Georgios Tsimpidas, Frey GUnet OpenEclass E-learning platform version 3.15 suffers from an unrestricted file upload vulnerability in certbadge.php that allows for remote command execution. advisories | CVE-2024-31777 Change Mirror Download import...

Concrete CMS 9.2.7 Cross Site Scripting / Open Redirect

0
Authored by Andrey Stoykov Concrete CMS version 9.2.7 suffers from information disclosure, open redirection, and persistent cross site scripting vulnerabilities. Change Mirror Download # Exploit Title: Multiple Web Flaws in concretecmsv9.2.7# Date:...

Trimble TM4Web 22.2.0 Privilege Escalation / Access Code Disclosure

0
Authored by Clement Cruchet An access control issue in Trimble TM4Web version 22.2.0 allows unauthenticated attackers to access a specific crafted URL path to retrieve the last registration access code...

MinIO Privilege Escalation

0
Authored by Jenson Zhao MinIO versions prior to 2024-01-31T20-20-33Z suffer from a privilege escalation vulnerability. advisories | CVE-2024-24747 Change Mirror Download # Exploit Title: MinIO < 2024-01-31T20-20-33Z - Privilege Escalation# Date: 2024-04-11#...

WordPress Playlist For Youtube 1.32 Cross Site Scripting

0
Authored by Erdemstar WordPress Playlist for Youtube plugin version 1.32 suffers from a persistent cross site scripting vulnerability. Change Mirror Download # Exploit Title: Wordpress Plugin Playlist for Youtube - Stored Cross-Site...

Ray OS 2.6.3 Command Injection

0
Authored by Fire_Wolf The Ray Project dashboard contains a CPU profiling page, and the format parameter is not validated before being inserted into a system command executed in a shell,...

Terratec dmx_6fire USB 1.23.0.02 Unquoted Service Path

0
Authored by Joseph Kwabena Fiagbor Terratec dmx_6fire USB version 1.23.0.02 suffers from an unquoted service path vulnerability. advisories | CVE-2024-31804 Change Mirror Download # Exploit Title: Terratec dmx_6fire USB - Unquoted Service...

Open Source Medicine Ordering System 1.0 SQL Injection

0
Authored by Onur Karasalihoglu Open Source Medicine Ordering System version 1.0 suffers from a remote SQL Injection vulnerability. Change Mirror Download # Exploit Title : Open Source Medicine Ordering System v1.0 -...

Daily Expense Manager 1.0 SQL Injection

0
Authored by Stefan Hesselman Daily Expense Manager version 1.0 suffers from a remote SQL injection vulnerability. Change Mirror Download # Exploit Title: Daily Expense Manager 1.0 - 'term' SQLi# Date: February 25th,...

WordPress Travelscape Theme 1.0.3 Arbitrary File Upload

0
Authored by Milad Karimi WordPress Travelscape theme version 1.0.3 suffers from an arbitrary file upload vulnerability. Change Mirror Download # Exploit Title: Wordpress Theme Travelscape v1.0.3 - Arbitrary File Upload# Date: 2024-04-01#...