Exploit Web Applications 2019 - Úvod Remote Web App Local&Privilege Escalation DoS & PoC ShellCode Exploit Exploit prog. Ex. Techniky Exp. kit Typy Exploitù Exploit Articles
Web Applications H 2020 2019 2018
2019-06-20
Cisco Prime Infrastructure - Runrshell Privilege Escalation (Metasploit)
Local
Linux
Cisco Prime Infrastructure Health Monitor - TarArchive Directory Traversal (Metasploit)
Remote
Linux - Use-After-Free via race Between modify_ldt() and #BR Exception
DoS
BlogEngine.NET 3.3.6/3.3.7 - XML External Entity Injection
WebApps
ASPX
WebERP 4.15 - SQL injection
PHP
Tuneclone 2.20 - Local SEH Buffer Overflow
Windows
2019-06-19
BlogEngine.NET 3.3.6/3.3.7 - 'theme Cookie' Directory Traversal / Remote Code Execution
BlogEngine.NET 3.3.6/3.3.7 - 'dirPath' Directory Traversal / Remote Code Execution
2019-06-18
Serv-U FTP Server < 15.1.7 - Local Privilege Escalation
Sahi pro 8.x - Cross-Site Scripting
Multiple
Sahi pro 8.x - SQL Injection
Sahi pro 7.x/8.x - Directory Traversal
2019-06-17
Thunderbird ESR < 60.7.XXX - 'icalrecur_add_bydayrules' Stack-Based Buffer Overflow
Thunderbird ESR < 60.7.XXX - 'parser_get_next_char' Heap-Based Buffer Overflow
Thunderbird ESR < 60.7.XXX - 'icalmemorystrdupanddequote' Heap-Based Buffer Overflow
Thunderbird ESR < 60.7.XXX - Type Confusion
Spring Security OAuth - Open Redirector
Java
AROX School-ERP Pro - Unauthenticated Remote Command Execution (Metasploit)
Microsoft Windows - UAC Protection Bypass (Via Slui File Handler Hijack) (PowerShell)
Netperf 2.6.0 - Stack-Based Buffer Overflow
Exim 4.87 - 4.91 - Local Privilege Escalation
HC10 HC.Server Service 10.14 - Remote Invalid Pointer Write
CleverDog Smart Camera DOG-2W / DOG-2W-V4 - Multiple Vulnerabilities
Hardware
RedwoodHQ 2.5.5 - Authentication Bypass
2019-06-14
Aida64 6.00.5100 - 'Log to CSV File' Local SEH Buffer Overflow
CentOS 7.6 - 'ptrace_scope' Privilege Escalation
2019-06-13
Pronestor Health Monitoring < 8.1.11.0 - Privilege Escalation
Sitecore 8.x - Deserialization Remote Code Execution
2019-06-12
FusionPBX 4.4.3 - Remote Command Execution
2019-06-11
Webmin 1.910 - 'Package Updates' Remote Command Execution (Metasploit)
Liferay Portal 7.1 CE GA=3 / SimpleCaptcha API - Cross-Site Scripting
JSP
phpMyAdmin 4.8 - Cross-Site Request Forgery
WordPress Plugin Insert or Embed Articulate Content into WordPress - Remote Code Execution
ProShow 9.0.3797 - Local Privilege Escalation
2019-06-10
Ubuntu 18.04 - 'lxd' Privilege Escalation
UliCMS 2019.1 'Spitting Lama' - Persistent Cross-Site Scripting
2019-06-07
Microsoft Windows - AppX Deployment Service Local Privilege Escalation (3)
2019-06-05
Exim 4.87 < 4.91 - (Local / Remote) Command Execution
2019-06-04
Vim < 8.1.1365 / Neovim < 0.3.6 - Arbitrary Code Execution
2019-06-03
Nvidia GeForce Experience Web Helper - Command Injection
2019-06-06
Supra Smart Cloud TV - 'openLiveURL()' Remote File Inclusion
LibreNMS - addhost Command Injection (Metasploit)
IBM Websphere Application Server - Network Deployment Untrusted Data Deserialization Remote Code Execution (Metasploit)
Google Chrome 73.0.3683.103 - 'WasmMemoryObject::Grow' Use-After-Free
Zimbra < 8.8.11 - XML External Entity Injection / Server-Side Request Forgery
Zoho ManageEngine ServiceDesk Plus 9.3 - 'PurchaseRequest.do' Cross-Site Scripting
Zoho ManageEngine ServiceDesk Plus 9.3 - 'SearchN.do' Cross-Site Scripting
Zoho ManageEngine ServiceDesk Plus 9.3 - 'SolutionSearch.do' Cross-Site Scripting
Zoho ManageEngine ServiceDesk Plus 9.3 - 'SiteLookup.do' Cross-Site Scripting
DVD X Player 5.5 Pro - Local Buffer Overflow (SEH)
Cisco RV130W 1.0.3.44 - Remote Stack Overflow
NUUO NVRMini 2 3.9.1 - 'sscanf' Stack Overflow
IceWarp 10.4.4 - Local File Inclusion
WordPress Plugin Form Maker 1.13.3 - SQL Injection
AUO Solar Data Recorder < 1.3.0 - Incorrect Access Control
KACE System Management Appliance (SMA) < 9.0.270 - Multiple Vulnerabilities
2019-05-30
Microsoft Windows Remote Desktop - 'BlueKeep' Denial of Service
2014-11-24
Microsoft Windows 8.1/ Server 2012 - 'Win32k.sys' Local Privilege Escalation (MS14-058)
2019-05-29
Oracle Application Testing Suite - WebLogic Server Administration Console War Deployment (Metasploit)
Qualcomm Android - Kernel Use-After-Free via Incorrect set_page_dirty() in KGSL
Android
Spidermonkey - IonMonkey Unexpected ObjectGroup in ObjectGroupDispatch Operation
Spidermonkey - IonMonkey Leaks JS_OPTIMIZED_OUT Magic Value to Script
2019-05-23
Microsoft Windows - AppX Deployment Service Local Privilege Escalation (2)
Free SMTP Server 2.5 - Denial of Service (PoC)
pfSense 2.4.4-p3 (ACME Package 0.59_14) - Persistent Cross-Site Scripting
2019-05-28
Phraseanet < 4.0.7 - Cross-Site Scripting
Petraware pTransformer ADC < 2.1.7.22827 - Login Bypass
EquityPandit 1.0 - Password Disclosure
2019-05-27
Typora 0.9.9.24.6 - Directory Traversal
macOS
Deltek Maconomy 2.2.5 - Local File Inclusion
Pidgin 2.13.0 - Denial of Service (PoC)
2019-05-24
Fast AVI MPEG Joiner - 'License Name' Denial of Service (PoC)
Microsoft Internet Explorer Windows 10 1809 17763.316 - Scripting Engine Memory Corruption
Cyberoam General Authentication Client 2.1.2.7 - 'Server Address' Denial of Service (PoC)
Cyberoam Transparent Authentication Suite 2.1.2.5 - 'NetBIOS Name' Denial of Service (PoC)
Cyberoam Transparent Authentication Suite 2.1.2.5 - 'Fully Qualified Domain Name' Denial of Service (PoC)
Cyberoam SSLVPN Client 1.3.1.30 - 'HTTP Proxy' Denial of Service (PoC)
Cyberoam SSLVPN Client 1.3.1.30 - 'Connect To Server' Denial of Service (PoC)
Axessh 4.2 - 'Log file name' Local Stack-based Buffer Overflow
Opencart 3.0.3.2 - 'extension/feed/google_base' Denial of Service PoC
2019-05-15
Microsoft Windows - 'Win32k' Local Privilege Escalation
2019-05-22
Microsoft Internet Explorer 11 - Sandbox Escape
Microsoft Windows (x86) - Task Scheduler' .job' Import Arbitrary Discretionary Access Control List Write / Local Privilege Escalation
Microsoft Windows (x84/x64) - 'Error Reporting' Discretionary Access Control List / Local Privilege Escalation
Microsoft Windows 10 (17763.379) - Install DLL
Shopware - createInstanceFromNamedArguments PHP Object Instantiation Remote Code Execution (Metasploit)
Apple Mac OS X - Feedback Assistant Race Condition (Metasploit)
Visual Voicemail for iPhone - IMAP NAMESPACE Processing Use-After-Free
iOS
Microsoft Windows 10 1809 - 'CmKeyBodyRemapToVirtualForEnum' Arbitrary Key Enumeration Privilege Escalation
Terminal Services Manager 3.2.1 - Denial of Service
Nagios XI 5.6.1 - SQL injection
NetAware 1.20 - 'Share Name' Denial of Service (PoC)
NetAware 1.20 - 'Add Block' Denial of Service (PoC)
Horde Webmail 5.2.22 - Multiple Vulnerabilities
TapinRadio 2.11.6 - 'Uername' Denial of Service (PoC)
TapinRadio 2.11.6 - 'Address' Denial of Service (PoC)
RarmaRadio 2.72.3 - 'Username' Denial of Service (PoC)
RarmaRadio 2.72.3 - 'Server' Denial of Service (PoC)
Carel pCOWeb < B1.2.1 - Credentials Disclosure
Carel pCOWeb < B1.2.1 - Cross-Site Scripting
AUO Solar Data Recorder < 1.3.0 - 'addr' Cross-Site Scripting
Zoho ManageEngine ServiceDesk Plus 9.3 - Cross-Site Scripting
Zoho ManageEngine ServiceDesk Plus < 10.5 - Improper Access Restrictions
BlueStacks 4.80.0.1060 - Denial of Service (PoC)
2019-05-21
Apple macOS < 10.14.5 / iOS < 12.3 XNU - 'in6_pcbdetach' Stale Pointer Use-After-Free
Apple macOS < 10.14.5 / iOS < 12.3 XNU - Wild-read due to bad cast in stf_ioctl
Apple macOS < 10.14.5 / iOS < 12.3 JavaScriptCore - AIR Optimization Incorrectly Removes Assignment to Register
Apple macOS < 10.14.5 / iOS < 12.3 JavaScriptCore - Loop-Invariant Code Motion (LICM) in DFG JIT Leaves Stack Variable Uninitialized
Apple macOS < 10.14.5 / iOS < 12.3 DFG JIT Compiler - 'HasIndexedProperty' Use-After-Free
Brocade Network Advisor 14.4.1 - Unauthenticated Remote Code Execution
WordPress Plugin WPGraphQL 0.2.3 - Multiple Vulnerabilities
Oracle CTI Web Service - 'EBS_ASSET_HISTORY_OPERATIONS' XML Entity Injection
Deluge 1.3.15 - 'Webseeds' Denial of Service (PoC)
Deluge 1.3.15 - 'URL' Denial of Service (PoC)
TP-LINK TL-WR840N v5 00000005 - Cross-Site Scripting
Moodle Jmol Filter 6.1 - Directory Traversal / Cross-Site Scripting
2019-05-20
GetSimpleCMS - Unauthenticated Remote Code Execution (Metasploit)
Solaris 7/8/9 (SPARC) - 'dtprintinfo' Local Privilege Escalation (2)
Solaris
Solaris 7/8/9 (SPARC) - 'dtprintinfo' Local Privilege Escalation (1)
Solaris 10 1/13 (Intel) - 'dtprintinfo' Local Privilege Escalation
2019-04-02
LimeSurvey < 3.16 - Remote Code Execution
JioFi 4G M2S 1.0.2 - Cross-Site Request Forgery
WordPress Plugin PayPal Checkout Payment Gateway 1.6.8 - Parameter Tampering
Inout RealEstate - 'city' SQL Injection
Inout EasyRooms - SQL Injection
2019-03-29
CentOS Web Panel 0.9.8.789 - NameServer Field Persistent Cross-Site Scripting
2019-03-28
Jettweb PHP Hazır Rent A Car Sitesi Scripti V2 - 'arac_kategori_id' SQL Injection
BigTree 4.3.4 CMS - Multiple SQL Injection
Job Portal 3.1 - 'job_submit' SQL Injection
i-doit 1.12 - 'qr.php' Cross-Site Scripting
WordPress Plugin Loco Translate 2.2.1 - Local File Inclusion
WordPress Plugin Anti-Malware Security and Brute-Force Firewall 4.18.63 - Local File Inclusion
Fat Free CRM 0.19.0 - HTML Injection
Ruby
Airbnb Clone Script - Multiple SQL Injection
Thomson Reuters Concourse & Firm Central < 2.13.0097 - Directory Traversal / Local File Inclusion
2019-03-27
Jettweb Hazır Rent A Car Scripti V4 - SQL Injection
2019-03-26
SJS Simple Job Script - SQL Injection / Cross-Site Scripting
Titan FTP Server Version 2019 Build 3505 - Directory Traversal / Local File Inclusion
XooDigital - 'p' SQL Injection
XooGallery - Multiple SQL Injection
Rukovoditel ERP & CRM 2.4.1 - 'path' Cross-Site Scripting
Jettweb Php Hazır İlan Sitesi Scripti V2 - SQL Injection
2019-03-25
Zeeways Matrimony CMS - SQL Injection
Zeeways Jobsite CMS - 'id' SQL Injection
Jettweb PHP Hazır Haber Sitesi Scripti V3 - SQL Injection
Jettweb PHP Hazır Haber Sitesi Scripti V2 - SQL Injection (Authentication Bypass)
Jettweb PHP Hazır Haber Sitesi Scripti V1 - SQL Injection
Apache CouchDB 2.3.1 - Cross-Site Request Forgery / Cross-Site Scripting
2019-03-22
Inout Article Base CMS - SQL Injection
Meeplace Business Review Script - 'id' SQL Injection
Matri4Web Matrimony Website Script - Multiple SQL Injection
2019-03-21
Bootstrapy CMS - Multiple SQL Injection
Placeto CMS Alpha v4 - 'page' SQL Injection
uHotelBooking System - 'system_page' SQL Injection
The Company Business Website CMS - Multiple Vulnerabilities
Rails 5.2.1 - Arbitrary File Content Disclosure
21.03.2019
Netartmedia Vlog System - 'email' SQL Injection
webapps
20.03.2019
Netartmedia PHP Car Dealer - SQL Injection
Netartmedia PHP Real Estate Agency 4.0 - SQL Injection
Netartmedia Jobs Portal 6.1 - SQL Injection
Netartmedia PHP Dating Site - SQL Injection
Netartmedia PHP Business Directory 4.2 - SQL Injection
202CMS v10beta - Multiple SQL Injection
PLC Wireless Router GPN2.4P21-C-CN - Incorrect Access Control
PLC Wireless Router GPN2.4P21-C-CN - Cross-Site Request Forgery
Netartmedia Deals Portal - 'Email' SQL Injection
19.03.2019
Gila CMS 1.9.1 - Cross-Site Scripting
MyBB Upcoming Events Plugin 1.32 - Cross-Site Scripting
eNdonesia Portal 8.7 - Multiple Vulnerabilities
Netartmedia Event Portal 2.0 - 'Email' SQL Injection
Netartmedia PHP Mall 4.1 - SQL Injection
Netartmedia Real Estate Portal 5.0 - SQL Injection
18.03.2019
TheCarProject 2 - Multiple SQL Injection
15.03.2019
NetData 1.13.0 - HTML Injection
CMS Made Simple Showtime2 Module 3.6.2 - (Authenticated) Arbitrary File Upload
ICE HRM 23.0 - Multiple Vulnerabilities
Vembu Storegrid Web Interface 4.4.0 - Multiple Vulnerabilities
Laundry CMS - Multiple Vulnerabilities
Moodle 3.4.1 - Remote Code Execution
14.03.2019
Intel Modular Server System 10.18 - Cross-Site Request Forgery (Change Admin Password)
Pegasus CMS 1.0 - 'extra_fields.php' Plugin Remote Code Execution
13.03.2019
WordPress Plugin GraceMedia Media Player 1.0 - Local File Inclusion
pfSense 2.4.4-p1 (HAProxy Package 0.59_14) - Persistent Cross-Site Scripting
12.03.2019
PilusCart 1.4.1 - Cross-Site Request Forgery (Add Admin)
11.03.2019
Liferay CE Portal < 7.1.2 ga3 - Remote Command Execution (Metasploit)
OpenKM 6.3.2 < 6.3.7 - Remote Command Execution (Metasploit)
PRTG Network Monitor 18.2.38 - (Authenticated) Remote Code Execution
Flexpaper PHP Publish Service 2.3.6 - Remote Code Execution
08.03.2019
OrientDB 3.0.17 GA Community Edition - Cross-Site Request Forgery / Cross-Site Scripting
McAfee ePO 5.9.1 - Registered Executable Local Access Bypass
DirectAdmin 1.55 - 'CMD_ACCOUNT_ADMIN' Cross-Site Request Forgery
07.03.2019
Kados R10 GreenBee - Multiple SQL Injection
05.03.2019
OpenDocMan 1.3.4 - 'search.php where' SQL Injection
04.03.2019
Raisecom XPON ISCOMHT803G-U_2.0.0_140521_R4.1.47.002 - Remote Code Execution
zzzphp CMS 1.6.1 - Cross-Site Request Forgery
Splunk Enterprise 7.2.4 - Custom App Remote Command Execution (Persistent Backdoor / Custom Binary)
Booked Scheduler 2.7.5 - Remote Command Execution (Metasploit)
OOP CMS BLOG 1.0 - Multiple SQL Injection
OOP CMS BLOG 1.0 - Multiple Cross-Site Request Forgery
CMSsite 1.0 - Multiple Cross-Site Request Forgery
elFinder 2.1.47 - 'PHP connector' Command Injection
MarcomCentral FusionPro VDP Creator < 10.0 - Directory Traversal
Bolt CMS 3.6.4 - Cross-Site Scripting
Craft CMS 3.1.12 Pro - Cross-Site Scripting
WordPress Plugin Cerber Security, Antispam & Malware Scan 8.0 - Multiple Bypass Vulnerabilities
Fiberhome AN5506-04-F RP2669 - Persistent Cross-Site Scripting
01.03.2019
WordPress Core 5.0 - Remote Code Execution
28.02.2019
Simple Online Hotel Reservation System - SQL Injection
Simple Online Hotel Reservation System - Cross-Site Request Forgery (Add Admin)
Simple Online Hotel Reservation System - Cross-Site Request Forgery (Delete Admin)
Joomla! Component J2Store < 3.3.7 - SQL Injection
Usermin 1.750 - Remote Command Execution (Metasploit)
Feng Office 3.7.0.5 - Remote Command Execution (Metasploit)
25.02.2019
Jenkins Plugin Script Security 1.49/Declarative 1.3.4/Groovy 2.60 - Remote Code Execution
zzzphp CMS 1.6.1 - Remote Code Execution
PHP Ecommerce Script 2.0.6 - Cross-Site Scripting / SQL Injection
News Website Script 2.0.5 - SQL Injection
Advance Gift Shop Pro Script 2.0.3 - SQL Injection
Drupal < 8.6.9 - REST Module Remote Code Execution
23.02.2019
Drupal < 8.6.10 / < 8.5.11 - REST Module Remote Code Execution
22.02.2019
Quest NetVault Backup Server < 11.4.5 - Process Manager Service SQL Injection / Remote Code Execution
Micro Focus Filr 3.4.0.217 - Path Traversal / Local Privilege Escalation
Teracue ENC-400 - Command Injection / Missing Authentication
21.02.2019
C4G Basic Laboratory Information System (BLIS) 3.4 - SQL Injection
EI-Tube 3 - SQL Injection
20.02.2019
HotelDruid 2.3 - Cross-Site Scripting
19.02.2019
Find a Place CMS Directory 1.5 - 'assets/external/data_2.php cate' SQL Injection
Listing Hub CMS 1.0 - 'pages.php id' SQL Injection
Zuz Music 2.1 - 'zuzconsole/___contact ' Persistent Cross-Site Scripting
eDirectory - SQL Injection
XAMPP 5.6.8 - SQL Injection / Persistent Cross-Site Scripting
Zoho ManageEngine Netflow Analyzer Professional 7.0.0.2 - Path Traversal / Cross-Site Scripting
Ask Expert Script 3.0.5 - Cross Site Scripting / SQL Injection
Jenkins Plugin Script Security < 1.50/Declarative < 1.3.4.1/Groovy < 2.61.1 - Remote Code Execution (PoC)
18.02.2019
qdPM 9.1 - 'type' Cross-Site Scripting
qdPM 9.1 - 'search[keywords]' Cross-Site Scripting
Master IP CAM 01 3.3.4.2103 - Remote Command Execution
CGI
MISP 2.4.97 - SQL Command Execution via Command Injection in STIX Module
CMSsite 1.0 - 'post' SQL Injection
M/Monit 3.7.2 - Privilege Escalation
Webiness Inventory 2.3 - 'ProductModel' Arbitrary File Upload
Apache CouchDB 2.3.0 - Cross-Site Scripting
ArangoDB Community Edition 3.4.2-1 - Cross-Site Scripting
Comodo Dome Firewall 2.7.0 - Cross-Site Scripting
Zoho ManageEngine ServiceDesk Plus (SDP) < 10.0 build 10012 - Arbitrary File Upload
WordPress Plugin WooCommerce - GloBee (cryptocurrency) Payment Gateway 1.1.1 - Payment Bypass / Unauthorized Order Status Spoofing
15.02.2019
MyBB Trash Bin Plugin 1.1.3 - Cross-Site Scripting / Cross-Site Request Forgery
Jinja2 2.10 - 'from_string' Server Side Template Injection
Python
qdPM 9.1 - 'search_by_extrafields[]' SQL Injection
UniSharp Laravel File Manager 2.0.0-alpha7 - Arbitrary File Upload
14.02.2019
DomainMOD 4.11.01 - 'ssl-provider-name' Cross-Site Scripting
DomainMOD 4.11.01 - 'ssl-accounts.php username' Cross-Site Scripting
DomainMOD 4.11.01 - 'category.php CatagoryName, StakeHolder' Cross-Site Scripting
DomainMOD 4.11.01 - 'assets/add/dns.php' Cross-Site Scripting
DomainMOD 4.11.01 - 'assets/edit/host.php?whid=5' Cross-Site Scripting
WordPress Plugin Booking Calendar 8.4.3 - (Authenticated) SQL Injection
LayerBB 1.1.2 - Cross-Site Request Forgery (Add Admin)
13.02.2019
Rukovoditel Project Management CRM 2.4.1 - Cross-Site Scripting
PilusCart 1.4.1 - 'send' SQL Injection
12.02.2019
OPNsense < 19.1.1 - Cross-Site Scripting
Jenkins 2.150.2 - Remote Command Execution (Metasploit)
BlogEngine.NET 3.3.6 - Directory Traversal / Remote Code Execution
LayerBB 1.1.2 - Cross-Site Scripting
11.02.2019
Smoothwall Express 3.1-SP4 - Cross-Site Scripting
Coship Wireless Router 4.0.0.x/5.0.0.x - WiFi Password Reset
IPFire 2.21 - Cross-Site Scripting
MyBB Bans List 1.0 - Cross-Site Scripting
VA MAX 8.3.4 - (Authenticated) Remote Code Execution
CentOS Web Panel 0.9.8.763 - Persistent Cross-Site Scripting
Webiness Inventory 2.3 - 'email' SQL Injection
06.02.2019
osCommerce 2.3.4.1 - 'currency' SQL Injection
osCommerce 2.3.4.1 - 'products_id' SQL Injection
osCommerce 2.3.4.1 - 'reviews_id' SQL Injection
05.02.2019
BEWARD N100 H.264 VGA IP Camera M2.1.6 - RTSP Stream Disclosure
BEWARD N100 H.264 VGA IP Camera M2.1.6 - Cross-Site Request Forgery (Add Admin)
BEWARD N100 H.264 VGA IP Camera M2.1.6 - Remote Code Execution
BEWARD N100 H.264 VGA IP Camera M2.1.6 - Arbitrary File Disclosure
devolo dLAN 550 duo+ Starter Kit - Cross-Site Request Forgery
devolo dLAN 550 duo+ Starter Kit - Remote Code Execution
Zyxel VMG3312-B10B DSL-491HNU-B1B v2 Modem - Cross-Site Request Forgery
OpenMRS Platform < 2.24.0 - Insecure Object Deserialization
04.02.2019
ResourceSpace 8.6 - 'watched_searches.php' SQL Injection
SuiteCRM 7.10.7 - 'parentTab' SQL Injection
SuiteCRM 7.10.7 - 'record' SQL Injection
Nessus 8.2.1 - Cross-Site Scripting
pfSense 2.4.4-p1 - Cross-Site Scripting
01.02.2019
SureMDM < 2018-11 Patch - Local / Remote File Inclusion
30.01.2019
Rukovoditel Project Management CRM 2.4.1 - 'lists_id' SQL Injection
29.01.2019
PDF Signer 3.0 - Server-Side Template Injection leading to Remote Command Execution (via Cross-Site Request Forgery Cookie)
28.01.2019
Rundeck Community Edition < 3.0.13 - Persistent Cross-Site Scripting
WordPress Plugin Ad Manager WD 1.0.11 - Arbitrary File Download
AirTies Air5341 Modem 1.0.0.12 - Cross-Site Request Forgery
LogonBox Limited / Hypersocket Nervepoint Access Manager - (Unauthenticated) Insecure Direct Object Reference
CMSsite 1.0 - 'cat_id' SQL Injection
CMSsite 1.0 - 'search' SQL Injection
Cisco RV300 / RV320 - Information Disclosure
Cisco Firepower Management Center 6.2.2.2 / 6.2.3 - Cross-Site Scripting
Newsbull Haber Script 1.0.0 - 'search' SQL Injection
Care2x 2.7 (HIS) Hospital Information System - Multiple SQL Injection
Teameyo Project Management System 1.0 - SQL Injection
Mess Management System 1.0 - SQL Injection
MyBB IP History Logs Plugin 1.0.2 - Cross-Site Scripting
ResourceSpace 8.6 - 'collection_edit.php' SQL Injection
25.01.2019
Cisco RV320 Dual Gigabit WAN VPN Router 1.4.2.15 - Command Injection
GreenCMS 2.x - SQL Injection
GreenCMS 2.x - Arbitrary File Download
Wordpress Plugin Wisechat 2.6.3 - Reverse Tabnabbing
24.01.2019
Joomla! Component J-CruisePortal 6.0.4 - SQL Injection
Joomla! Component JHotelReservation 6.0.7 - SQL Injection
SimplePress CMS 1.0.7 - SQL Injection
SirsiDynix e-Library 3.5.x - Cross-Site Scripting
Splunk Enterprise 7.2.3 - (Authenticated) Custom App Remote Code Execution
ImpressCMS 1.3.11 - 'bid' SQL Injection
Zyxel NBG-418N v2 Modem 1.00(AAXM.6)C0 - Cross-Site Request Forgery
23.01.2019
Nagios XI 5.5.6 - Remote Code Execution / Privilege Escalation
Joomla! Component vBizz 1.0.7 - SQL Injection
Joomla! Component vBizz 1.0.7 - Remote Code Execution
Joomla! Component vWishlist 1.0.1 - SQL Injection
Joomla! Component vAccount 2.0.2 - 'vid' SQL Injection
Joomla! Component vReview 1.9.11 - SQL Injection
Joomla! Component vRestaurant 1.9.4 - SQL Injection
Joomla! Component VMap 1.9.6 - SQL Injection
Joomla! Component J-BusinessDirectory 4.9.7 - 'type' SQL Injection
Joomla! Component J-ClassifiedsManager 3.0.5 - SQL Injection
Joomla! Component JMultipleHotelReservation 6.0.7 - SQL Injection
22.01.2019
Joomla! Component Easy Shop 1.2.3 - Local File Inclusion
21.01.2019
Kepler Wallpaper Script 1.1 - SQL Injection
Coman 1.0 - 'id' SQL Injection
Reservic 1.0 - 'id' SQL Injection
MoneyFlux 1.0 - 'id' SQL Injection
PHP Dashboards NEW 5.8 - 'dashID' SQL Injection
PHP Dashboards NEW 5.8 - Local File Inclusion
PHP Uber-style GeoTracking 1.1 - SQL Injection
Adianti Framework 5.5.0 - SQL Injection
18.01.2019
SeoToaster Ecommerce / CRM / CMS 3.0.0 - Local File Inclusion
phpTransformer 2016.9 - SQL Injection
phpTransformer 2016.9 - Directory Traversal
Joomla! Core 3.9.1 - Persistent Cross-Site Scripting in Global Configuration Textfilter Settings
Pydio / AjaXplorer < 5.0.4 - (Unauthenticated) Arbitrary File Upload
17.01.2019
Oracle Reports Developer Component 12.2.1.3 - Cross-site Scripting
16.01.2019
FortiGate FortiOS < 6.0.3 - LDAP Credential Disclosure
Roxy Fileman 1.4.5 - Arbitrary File Download
doorGets CMS 7.0 - Arbitrary File Download
ShoreTel / Mitel Connect ONSITE 19.49.5200.0 - Remote Code Execution
GL-AR300M-Lite 2.27 - (Authenticated) Command Injection / Arbitrary File Download / Directory Traversal
Coship Wireless Router 4.0.0.48 / 4.0.0.40 / 5.0.0.54 / 5.0.0.55 / 10.0.0.49 - Unauthenticated Admin Password Reset
Blueimp's jQuery File Upload 9.22.0 - Arbitrary File Upload Exploit
15.01.2019
ownDMS 4.7 - SQL Injection
14.01.2019
Across DR-810 ROM-0 - Backup File Disclosure
i-doit CMDB 1.12 - Arbitrary File Download
i-doit CMDB 1.12 - SQL Injection
Horde Imp - 'imap_open' Remote Command Execution
Modern POS 1.3 - Arbitrary File Download
Modern POS 1.3 - SQL Injection
Twilio WEB To Fax Machine System Application 1.0 - SQL Injection
Live Call Support Widget 1.5 - Cross-Site Request Forgery (Add Admin)
Live Call Support Widget 1.5 - Remote Code Execution / SQL Injection
Craigs Classified Ads CMS Theme 1.0.2 - SQL Injection
Find a Place CMS Directory 1.5 - SQL Injection
Cleanto 5.0 - SQL Injection
Lenovo R2105 - Cross-Site Request Forgery (Command Execution)
HealthNode Hospital Management System 1.0 - SQL Injection
Hucart CMS 5.7.4 - Cross-Site Request Forgery (Add Administrator Account)
ThinkPHP 5.X - Remote Command Execution
Real Estate Custom Script 2.0 - SQL Injection
Job Portal Platform 1.0 - SQL Injection
Umbraco CMS 7.12.4 - (Authenticated) Remote Code Execution
Bigcart - Ecommerce Multivendor System 1.0 - SQL Injection
Portier Vision 4.4.4.2 / 4.4.4.6 - SQL Injection
AudioCode 400HD - Command Injection
11.01.2019
Adapt Inventory Management System 1.0 - SQL Injection
Joomla! Component JoomProject 1.1.3.2 - Information Disclosure
Joomla! Component JoomCRM 1.1.1 - SQL Injection
10.01.2019
PEAR Archive_Tar < 1.4.4 - PHP Object Injection
eBrigade ERP 4.5 - Arbitrary File Download
Matrix MLM Script 1.0 - Information Disclosure
doitX 1.0 - 'search' SQL Injection
Shield CMS 2.2 - 'email' SQL Injection
Architectural 1.0 - 'email' SQL Injection
MLMPro 1.0 - SQL Injection
Event Calendar 3.7.4 - 'id' SQL Injection
Event Locations 1.0.1 - 'id' SQL Injection
eBrigade ERP 4.5 - SQL Injection
OpenSource ERP 6.3.1. - SQL Injection
09.01.2019
Heatmiser Wifi Thermostat 1.7 - Cross-Site Request Forgery (Update Admin)
ZTE MF65 BD_HDV6MF65V1.0.0B05 - Cross-Site Scripting
BlogEngine 3.3 - XML External Entity Injection
08.01.2019
CF Image Hosting Script 1.6.5 - (Delete all Pictures) Privilege Escalation
Dolibarr ERP-CRM 8.0.4 - 'rowid' SQL Injection
07.01.2019
Embed Video Scripts - Persistent Cross-Site Scripting
All in One Video Downloader 1.2 - (Authenticated) SQL Injection
LayerBB 1.1.1 - Persistent Cross-Site Scripting
MyBB OUGC Awards Plugin 1.8.3 - Persistent Cross-Site Scripting
PLC Wireless Router GPN2.4P21-C-CN - Cross-Site Scripting
phpMoAdmin MongoDB GUI 1.1.5 - Cross-Site Request Forgery / Cross-Site Scripting
Wordpress Plugin UserPro < 4.9.21 - User Registration Privilege Escalation
MyT Project Management 1.5.1 - 'Charge[group_total]' SQL Injection
Roxy Fileman 1.4.5 - Unrestricted File Upload / Directory Traversal
Ajera Timesheets 9.10.16 - Deserialization of Untrusted Data
Leica Geosystems GR10/GR25/GR30/GR50 GNSS 4.30.063 - Cross-Site Request Forgery
Leica Geosystems GR10/GR25/GR30/GR50 GNSS 4.30.063 - JS/HTML Code Injection
Huawei E5330 21.210.09.00.158 - Cross-Site Request Forgery (Send SMS)
02.01.2019
WordPress Plugin Adicon Server 1.2 - 'selectedPlace' SQL Injection
Frog CMS 0.9.5 - Cross-Site Scripting
Vtiger CRM 7.1.0 - Remote Code Execution