Swagger UI 4.1.3 – User Interface (UI) Misrepresentation of Critical Information
# Exploit Title: Swagger UI 4.1.3 - User Interface (UI) Misrepresentation of Critical Information
json 相关平台内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: Swagger UI 4.1.3 - User Interface (UI) Misrepresentation of Critical Information
# Exploit Title: openMAINT 1.1-2.4.2 - Arbitrary File Upload
# Exploit Title: EasyPMS 1.0.0 - Authentication Bypass
# Exploit Title: NSClient++ 0.5.2.35 - Authenticated Remote Code Execution
# Exploit Title: AVideo Platform 8.1 - Cross Site Request Forgery (Password Reset)
# Exploit Title: AVideo Platform 8.1 - Information Disclosure (User Enumeration)
# Exploit Title: Verodin Director Web Console 3.5.4.0 - Remote Authenticated Password Disclosure (PoC)
# Exploit Title: Ajenti 2.1.31 - Remote Code Exection (Metasploit)
# Exploit Title: NPMJS gitlabhook 0.0.17 - 'repository' Remote Command Execution
RoyalTS/X Exploit
Advisory: CyberArk Password Vault Web Access Remote Code Execution
Document Title:
NethServer 7.3.1611 (Upload.json) CSRF Script Insertion Vulnerability
Advisory: Arbitrary File Disclosure with root Privileges via RdxEngine-API in REDDOXX Appliance
Advisory: Remote Command Execution as root in REDDOXX Appliance
# Exploit Title: Sophos Web Appliance reporting JSON trafficType Remote Command Injection Vulnerablity
Software: Sungard eTRAKiT3
Stop sending requests
#!/usr/bin/python
RCE Security Advisory