php

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers/漏洞数据库

日期 标题 类别 作者
2024-02-27 dawa-pharma 1.0-2022 – Multiple-SQLi
  • webapps
  • nu11secur1ty
    2024-02-26 Flashcard Quiz App v1.0 – ‘card’ SQL Injection
  • remote
  • SoSPiro
    2024-02-26 Online Shopping System Advanced – Sql Injection
  • webapps
  • Furkan Gedik
    2024-02-26 taskhub 2.8.7 – SQL Injection
  • webapps
  • CraCkEr
    2024-02-26 comments-like-dislike < 1.2.0 - Authenticated (Subscriber+) Plugin Setting Reset
  • webapps
  • Diaa Hanna
    2024-02-26 Simple Inventory Management System v1.0 – ’email’ SQL Injection
  • remote
  • SoSPiro
    2024-02-26 FAQ Management System v1.0 – ‘faq’ SQL Injection
  • remote
  • SoSPiro
    2024-02-21 WEBIGniter v28.7.23 – Stored Cross Site Scripting (XSS)
  • webapps
  • Sagar Banwa
    2024-02-19 JFrog Artifactory < 7.25.4 - Blind SQL Injection
  • webapps
  • ardr
    2024-02-19 Employee Management System v1 – ’email’ SQL Injection
  • webapps
  • SoSPiro
    2024-02-19 phpFox < 4.8.13 - (redirect) PHP Object Injection Exploit
  • webapps
  • Egidio Romano
    2024-02-13 Lost and Found Information System v1.0 – ( IDOR ) leads to Account Take over
  • webapps
  • Or4nG.M4N
    2024-02-09 Online Nurse Hiring System 1.0 – Time-Based SQL Injection
  • webapps
  • yozgatalperen1
    2024-02-09 Rail Pass Management System 1.0 – Time-Based SQL Injection
  • webapps
  • yozgatalperen1
    2024-02-09 WordPress Seotheme – Remote Code Execution Unauthenticated
  • webapps
  • Milad karimi
    2024-02-09 WordPress Augmented-Reality – Remote Code Execution Unauthenticated
  • webapps
  • Milad karimi
    2024-02-09 Advanced Page Visit Counter 1.0 – Admin+ Stored Cross-Site Scripting (XSS) (Authenticated)
  • webapps
  • Furkan ÖZER
    2024-02-05 MISP 2.4.171 – Stored XSS
  • webapps
  • Mücahit Çeri
    2024-02-05 Clinic’s Patient Management System 1.0 – Unauthenticated RCE
  • webapps
  • Oğulcan Hami Gül
    2024-02-05 Curfew e-Pass Management System 1.0 – FromDate SQL Injection
  • webapps
  • Puja Dey
    2024-02-05 GYM MS – GYM Management System – Cross Site Scripting (Stored)
  • webapps
  • yozgatalperen1
    2024-02-02 Juniper-SRX-Firewalls&EX-switches – (PreAuth-RCE) (PoC)
  • webapps
  • whiteOwl
    2024-01-31 Grocy <=4.0.2 - CSRF
  • webapps
  • Chance Proctor
    2024-01-31 101 News 1.0 – Multiple-SQLi
  • webapps
  • nu11secur1ty