Listing of latest Exploits

This is live excerpt from our database.

Date Name Status
2024-05-01Travel-Manager-OTMSP-1.0 Multiple SQLiPublished
2024-05-01Doctor Appointment Management System 1.0 Cross Site ScriptingPublished
2024-05-01Kemp LoadMaster Unauthenticated Command InjectionPublished
2024-04-27Fvgfl - SQL Injection vulnerabilityPublished
2024-04-27GitLens Git Local Configuration ExecutionPublished
2024-04-27Positron Broadcast Signal Processor TRA7005 v1.20 Authentication BypassPublished
2024-04-25Nginx 1.25.5 Host Header ValidationPublished
2024-04-25Apache Solr Backup/Restore API Remote Code ExecutionPublished
2024-04-25Hikvision Camera - Remote command executionPublished
2024-04-25Palo Alto Networks PAN-OS Unauthenticated Remote Code ExecutionPublished
2024-04-25Palo Alto PAN-OS Command Execution / Arbitrary File CreationPublished
2024-04-25Relate Learning And Teaching system Version before 2024.1 SSTI(Markup Sandbox function) lead to RCEPublished
2024-04-25FortiNet FortiClient EMS 7.2.2 / 7.0.10 SQL Injection / Remote Code ExecutionPublished
2024-04-22LRMS-PHP-by-oretnom23-v1.0 hat-trickPublished
2024-04-22Elber Signum DVB-S/S2 IRD For Radio Networks 1.999 Authentication BypassPublished
2024-04-21Wordpress Plugin Alemha Watermarker 1.3.1 Stored Cross-Site Scripting (XSS)Published
2024-04-21Flowise 1.6.5 Authentication BypassPublished
2024-04-21Relate Learning And Teaching system Version before 2024.1 SSTI(Page Sandbox function) lead to RCEPublished
2024-04-21Solar-Log Base 2000- Broken Access ControlPublished
2024-04-21Relate Learning And Teaching system Version before 2024.1 Stored XSSPublished
2024-04-21North Wales - Sql InjectionPublished
2024-04-21Elber Wayber Analog/Digital Audio STL 4.00 Insecure Direct Object ReferencePublished
2024-04-21Elber Wayber Analog/Digital Audio STL 4.00 Authentication BypassPublished
2024-04-21Elber ESE DVB-S/S2 Satellite Receiver 1.5.x Insecure Direct Object ReferencePublished
2024-04-21WBCE CMS Version 1.6.1 Remote Command Execution (Authenticated)Published
2024-04-16Centreon 23.10-1.el8 SQL InjectionPublished
2024-04-16Backdoor.Win32.Dumador.c / Remote Stack Buffer Overflow (SEH)Published
2024-04-16Kruxton-1.0-FileUpload-RCEPublished
2024-04-16CrushFTP Remote Code ExecutionPublished
2024-04-16BMC Compuware iStrobe Web 20.13 Pre-auth RCEPublished
2024-04-15Moodle 3.10.1 SQL InjectionPublished
2024-04-15Jenkins 2.441 Local File InclusionPublished
2024-04-15Django REST Framework SimpleJWT 5.3.1 Information DisclosurePublished
2024-04-15Kruxton-1.0-Multiple-SQLiPublished
2024-04-15AMPLE BILLS 0.1 SQL injectionPublished
2024-04-15PrusaSlicer 2.6.1 Arbitrary Code ExecutionPublished
2024-04-15OpenClinic GA 5.247.01 Path Traversal (Authenticated)Published
2024-04-15Amazon AWS Glue Database Password DisclosurePublished
2024-04-14MinIO < 2024-01-31T20-20-33Z Privilege EscalationPublished
2024-04-14Bigem Teknoloji - Sql InjectionPublished