Pearson Vue VTS 2.3.1911 Installer – VUEApplicationWrapper Unquoted Service Path
# Exploit Title: Pearson Vue VTS 2.3.1911 Installer - VUEApplicationWrapper Unquoted Service Path
Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: Pearson Vue VTS 2.3.1911 Installer - VUEApplicationWrapper Unquoted Service Path
# Exploit Title: Intel(r) Management and Security Application 5.2 - User Notification Service Unquoted Service Path
#Exploit Title: Tendenci 12.3.1 - CSV/ Formula Injection
# Exploit Title: ATX MiniCMTS200a Broadband Gateway 2.0 - Credential Disclosure
# Exploit Title: Rejetto HttpFileServer 2.3.x - Remote Command Execution (3)
# Exploit Title: Intelbras Router RF 301K 1.1.2 - Authentication Bypass
# Exploit Title: YATinyWinFTP - Denial of Service (PoC)
# Exploit Title: Wordpress Theme Wibar 1.1.8 - 'Brand Component' Stored Cross Site Scripting
# Exploit Title: SAP Lumira 1.31 - Stored Cross-Site Scripting
# Exploit Title: WonderCMS 3.1.3 - 'uploadFile' Stored Cross-Site Scripting
# Product: Ruckus IoT Controller (Ruckus vRIoT)
# Exploit title: Laravel Administrator 4 - Unrestricted File Upload (Authenticated)
# Exploit Title: Acronis Cyber Backup 12.5 Build 16341 - Unauthenticated SSRF
# Exploit Title: Moodle 3.8 - Unrestricted File Upload
# Exploit Title: Wordpress Theme Accesspress Social Icons 1.7.9 - SQL injection (Authenticated)
# Exploit Title: Foxit Reader 9.0.1.1049 - Arbitrary Code Execution
# Exploit Title: House Rental 1.0 - 'keywords' SQL Injection
# Exploit Title: libupnp 1.6.18 - Stack-based buffer overflow (DoS)
# Exploit Title: ElkarBackup 1.3.3 - 'Policy[name]' and 'Policy[Description]' Stored Cross-site Scripting
# Exploit Title: Best Support System 3.0.4 - 'ticket_body' Persistent XSS (Authenticated)
# Exploit Title: Pure-FTPd 1.0.48 - Remote Denial of Service
Exploit Title: Razer Chroma SDK Server 3.16.02 - Race Condition Remote File Execution
# Exploit Title: Wondershare Driver Install Service help 10.7.1.321 - 'ElevationService' Unquote Service Path
# Exploit Title: WonderCMS 3.1.3 - 'page' Persistent Cross-Site Scripting
# Exploit Title: osCommerce 2.3.4.1 - 'title' Persistent Cross-Site Scripting
# Exploit Title: SyncBreeze 10.0.28 - 'password' Remote Buffer Overflow
# Exploit Title: nopCommerce Store 4.30 - 'name' Stored Cross-Site Scripting
# Exploit Title: Apache OpenMeetings 5.0.0 - 'hostname' Denial of Service
# Exploit Title: Seowon 130-SLC router 1.0.11 - 'ipAddr' RCE (Authenticated)
# Exploit Title: OpenCart 3.0.3.6 - 'Profile Image' Stored Cross Site Scripting (Authenticated)
# Exploit Title: OpenCart 3.0.3.6 - 'subject' Stored Cross-Site Scripting
# Exploit Title: docPrint Pro 8.0 - 'Add URL' Buffer Overflow (SEH Egghunter)
# Exploit Title: Boxoft Audio Converter 2.3.0 - '.wav' Buffer Overflow (SEH)
# Exploit Title: VTiger v7.0 CRM - 'To' Persistent XSS
# Exploit Title: LifeRay 7.2.1 GA2 - Stored XSS
# Exploit Title: TP-Link TL-WA855RE V5_200415 - Device Reset Auth Bypass
# Exploit Title: Zortam Mp3 Media Studio 27.60 - Remote Code Execution (SEH)
# Exploit Title: WonderCMS 3.1.3 - 'content' Persistent Cross-Site Scripting
# Exploit Title: IBM Tivoli Storage Manager Command Line Administrative Interface 5.2.0.1 - id' Field Stack Based Buf...
# Exploit Title: Boxoft Convert Master 1.3.0 - 'wav' SEH Local Exploit
# Exploit Title: PESCMS TEAM 2.3.2 - Multiple Reflected XSS
# Exploit Title: xuucms 3 - 'keywords' SQL Injection
# Exploit Title: Fortinet FortiOS 6.0.4 - Unauthenticated SSL VPN User Password Modification
# Exploit Title: Genexis Platinum 4410 Router 2.1 - UPnP Credential Exposure
# Exploit Title: Gitlab 12.9.0 - Arbitrary File Read (Authenticated)
# Title: TestBox CFML Test Framework 4.1.0 - Arbitrary File Write and Remote Code Execution
# Title: TestBox CFML Test Framework 4.1.0 - Directory Traversal
# Exploit Title: Gemtek WVRTM-127ACN 01.01.02.141 - Authenticated Arbitrary Command Injection