iWay Data Quality Suite Web Console 10.6.1.ga – XML External Entity Injection
# Exploit Title: iWay Data Quality Suite Web Console 10.6.1.ga-2016-11-20 – XML External Entity Injection
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: iWay Data Quality Suite Web Console 10.6.1.ga-2016-11-20 – XML External Entity Injection
# Exploit Title: ManageEngine Desktop Central 10.0.271 - Cross-Site Scripting
# Exploit Title: Rausoft ID.prove 2.95 - 'Username' SQL injection
# Title: EE 4GEE Mini EE40_00_02.00_44 - Privilege Escalation
1. Content process -> Privileged content process (first_stage.js)
# Exploit Title: TransMac 12.2 - Denial of Service (PoC)
# Exploit Title: CrossFont 7.5 - Denial of Service (PoC)
Since commit 615d6e8756c8 ("mm: per-thread vma caching", first in 3.15),
EDB-Note: Systems with less than 32GB of RAM are unlikely to be affected by this issue, due to memory demands during ...
# Exploit Title: RICOH MP C2003 Printer - Cross-Site Scripting
# Exploit Title: Joomla! Component Dutch Auction Factory 2.0.2 - 'filter_order_Dir' SQL Injection
# # # # #
# Exploit Title: Easy PhoroResQ 1.0 - Buffer Overflow (PoC)
# Exploit Title: RICOH MP C6503 Plus Printer - Cross-Site Scripting
# Exploit Title: Joomla Component eXtroForms 2.1.5 - 'filter_type_id' SQL Injection
# Exploit Title: RICOH MP 305+ Printer - Cross-Site Scripting
# Exploit Title: RICOH MP C406Z Printer - Cross-Site Scripting
# Exploit Title: Joomla! Component Responsive Portfolio 1.6.1 - 'filter_order_Dir' SQL Injection
# Exploit Title: Faleemi Desktop Software 1.8.2 - 'Device alias' Local Buffer Overflow (SEH)
# Title: Navigate CMS 2.8 - Cross-Site Scripting
# Exploit Title: Joomla! CW Article Attachments 1.0.6 - 'id' SQL Injection
# Exploit Title: LG SuperSign EZ CMS 2.5 - Remote Code Execution
# Title: MyBB Visual Editor 1.8.18 - Cross-Site Scripting
# Exploit: udisks2 2.8.0 - Denial of Service (PoC)
# Exploit Title: Joomla! Component AMGallery 1.2.3 - 'filter_category_id' SQL Injection
# Exploit Title: Joomla! Component Micro Deal Factory 2.4.0 - 'id' SQL Injection
# Exploit Title: Termite 3.4 - Denial of Service (PoC)
# Exploit Title: RICOH Aficio MP 301 Printer - Cross-Site Scripting