multiple

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers/漏洞数据库

日期 标题 类别 作者
2021-06-30 Simple Traffic Offense System 1.0 – Stored Cross Site Scripting (XSS)
  • webapps
  • Barış Yıldızoğlu
    2021-06-30 Apache Superset 1.1.0 – Time-Based Account Enumeration
  • webapps
  • Dolev Farhi
    2021-06-24 VMware vCenter Server 7.0 – Remote Code Execution (RCE) (Unauthenticated)
  • webapps
  • CHackA0101
    2021-06-14 Accela Civic Platform 21.1 – ‘successURL’ Cross-Site-Scripting (XSS)
  • webapps
  • Abdulazeez Alaseeri
    2021-06-14 Accela Civic Platform 21.1 – ‘contactSeqNumber’ Insecure Direct Object References (IDOR)
  • webapps
  • Abdulazeez Alaseeri
    2021-06-11 Solar-Log 500 2.8.2 – Unprotected Storage of Credentials
  • webapps
  • Luca.Chiou
    2021-06-11 Solar-Log 500 2.8.2 – Incorrect Access Control
  • webapps
  • Luca.Chiou
    2021-06-11 Grocery crud 1.6.4 – ‘order_by’ SQL Injection
  • webapps
  • TonyShavez
    2021-06-11 Cerberus FTP Web Service 11 – ‘svg’ Stored Cross-Site Scripting (XSS)
  • webapps
  • Mohammad Hossein Kaviyany
    2021-06-11 Accela Civic Platform 21.1 – ‘servProvCode’ Cross-Site-Scripting (XSS)
  • webapps
  • Abdulazeez Alaseeri
    2021-06-02 Apache Airflow 1.10.10 – ‘Example Dag’ Remote Code Execution
  • webapps
  • Pepe Berba
    2021-06-01 Atlassian Jira 8.15.0 – Information Disclosure (Username Enumeration)
  • webapps
  • Mohammed Aloraimi
    2021-06-01 LogonTracer 1.2.0 – Remote Code Execution (Unauthenticated)
  • webapps
  • g0ldm45k
    2021-05-27 Postbird 0.8.4 – Javascript Injection
  • webapps
  • Debshubra Chakraborty
    2021-05-26 Codiad 2.8.4 – Remote Code Execution (Authenticated) (3)
  • webapps
  • Ron Jost
    2021-05-24 Codiad 2.8.4 – Remote Code Execution (Authenticated) (2)
  • webapps
  • Ron Jost
    2021-05-24 Schlix CMS 2.2.6-6 – Arbitary File Upload (Authenticated)
  • webapps
  • Emir Polat
    2021-05-21 Spotweb 1.4.9 – DOM Based Cross-Site Scripting (XSS)
  • webapps
  • nu11secur1ty
    2021-05-19 ManageEngine ADSelfService Plus 6.1 – CSV Injection
  • webapps
  • Metin Yunus Kandemir
    2021-05-19 In4Suit ERP 3.2.74.1370 – ‘txtLoginId’ SQL injection
  • webapps
  • Gulab Mondal
    2021-05-12 Chevereto 3.17.1 – Cross Site Scripting (Stored)
  • webapps
  • Akıner Kısa
    2021-05-06 Schlix CMS 2.2.6-6 – Remote Code Execution (Authenticated)
  • webapps
  • Eren Saraç
    2021-05-06 Schlix CMS 2.2.6-6 – ‘title’ Persistent Cross-Site Scripting (Authenticated)
  • webapps
  • Emircan Baş
    2021-05-05 Anote 1.0 – Persistent Cross-Site Scripting
  • webapps
  • TaurusOmar