Apache ActiveMQ 6.1.6 – Denial of Service (DOS)
# Exploit Title: Apache ActiveMQ 6.1.6 - Denial of Service (DOS)
multiple 相关平台内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: Apache ActiveMQ 6.1.6 - Denial of Service (DOS)
# Exploit Title: ZTE ZXV10 H201L - RCE via authentication bypass
# Daikin Security Gateway 214 - Remote Password Reset
# Exploit Title: Firefox ESR 115.11 - Arbitrary JavaScript execution in
# Date: 2025-04-17
# Exploit Title: UJCMS 9.6.3 User Enumeration via IDOR
# Exploit Title: Langflow 1.3.0 - Remote Code Execution (RCE)
# Exploit Title: Apache Commons Text 1.10.0 - Remote Code Execution
# Exploit Title: Hunk Companion Plugin 1.9.0 - Unauthenticated Plugin Installation
# Exploit Title: compop.ca 3.5.3 - Arbitrary code Execution
#Exploit Title: Blood Bank & Donor Management System 2.4 - CSRF Improper
# Exploit Title: Usermin 2.100 - Username Enumeration
# Exploit Title: Angular-Base64-Upload Library 0.1.21 - Unauthenticated Remote Code Execution (RCE)
# Exploit Title: TP-Link VN020 F3v(T) TT_V6.2.1021 - Denial Of Service (DOS)
#define _CRT_SECURE_NO_WARNINGS
# Exploit Title: Ethercreative Logs 3.0.3 - Path Traversal
# Exploit Title: Garage Management System 1.0 (categoriesName) - Stored XSS
# Exploit Title: ProConf 6.0 - Insecure Direct Object Reference (IDOR)
# Exploit Title: Teedy 1.11 - Account Takeover via Stored Cross-Site Scripting (XSS)
# Exploit Title: WooCommerce Customers Manager 29.4 - Post-Authenticated SQL Injection
ABB Cylon Aspect 3.08.02 - Cookie User Password Disclosure
ABB Cylon Aspect 3.08.03 Hard-coded Secrets
ABB Cylon Aspect 3.08.03 (MapServicesHandler) - Authenticated Reflected XSS
ABB Cylon Aspect 3.07.02 (userManagement.php) - Weak Password Policy
ABB Cylon Aspect 3.08.03 (CookieDB) SQL Injection
ABB Cylon Aspect 3.08.02 (bbmdUpdate.php) - Remote Code Execution
ABB Cylon Aspect 3.08.02 (uploadDb.php) - Remote Code Execution
ABB Cylon Aspect 3.08.02 (licenseUpload.php) Stored Cross-Site Scripting
ABB Cylon Aspect 3.08.02 (licenseServerUpdate.php) Stored Cross-Site Scripting
# Exploit Title: Ivanti Connect Secure 22.7R2.5 - Remote Code Execution (RCE)
# Author Title: John Page (aka hyp3rlinx)
# Exploit Title: Plane - Server side request forgery (SSRF)
# Author Title: John Page (aka hyp3rlinx)
# Exploit Title: Adapt Authoring Tool 0.11.3 - Remote Command Execution (RCE)
# Exploit Title: GestioIP 3.5.7 - Remote Command Execution (RCE)
# Exploit Title: GestioIP 3.5.7 - GestioIP Vulnerability: Auth. Cross-Site Scripting (XSS)
# Exploit Title: GestioIP 3.5.7 - GestioIP Vulnerability: Auth. Stored Cross-Site Scripting
# Exploit Title: GestioIP 3.5.7 - GestioIP Vulnerability: Auth. Cross-Site Request Forgery (CSRF)
# Exploit Title: SilverStripe 5.3.8 - Stored Cross Site Scripting (XSS) (Authenticated)
# Exploit Title: OpenPanel Copy and View functions in the File Manager 0.3.4 - Directory Traversal
# Exploit Title: OpenPanel 0.3.4 - OS Command Injection
# Exploit Title: OpenPanel 0.3.4 - Incorrect Access Control
# Exploit Title: OpenPanel 0.3.4 - Directory Traversal
# Exploit Title: Pimcore customer-data-framework 4.2.0 - SQL injection
# Exploit Title: Xinet Elegant 6 Asset Lib Web UI 6.1.655 - SQL Injection
# Exploit Title: ZTE ZXHN H168N 3.1 - RCE via authentication bypass
# Exploit Title: GestioIP 3.5.7 - Reflected Cross-Site Scripting (Reflected XSS)
# Exploit Title: Authenticated Stored Cross-Site Scripting (XSS) Via Search
# Exploit Title: qBittorrent 5.0.1 MITM RCE