Azure Apache Ambari 2302250400 – Spoofing
# Exploit Title: Azure Apache Ambari 2302250400 - Spoofing
multiple 相关平台内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: Azure Apache Ambari 2302250400 - Spoofing
// Exploit Title: Microsoft SharePoint Enterprise Server 2016 - Spoofing
## Title: Microsoft OneNote (Version 2305 Build 16.0.16501.20074) 64-bit - Spoofing
# Title: MotoCMS Version 3.4.3 - Server-Side Template Injection (SSTI)
#!/usr/bin/python3
# Exploit Title: FusionInvoice 2023-1.0 - Stored XSS (Cross-Site Scripting)
# Exploit Title: Yank Note v3.52.1 (Electron) - Arbitrary Code Execution
# Exploit Title: Gin Markdown Editor v0.7.4 (Electron) - Arbitrary Code Execution
# Exploit Title: PaperCut NG/MG 22.0.4 - Remote Code Execution (RCE)
# Exploit Title: Apache Superset 2.0.0 - Authentication Bypass
# Exploit Title: Codigo Markdown Editor v1.0.1 (Electron) - Arbitrary Code Execution
# Exploit Title: PaperCut NG/MG 22.0.4 - Authentication Bypass
## Exploit Title: Microsoft Word 16.72.23040900 - Remote Code Execution (RCE)
## Title: Microsoft-Edge-(Chromium-based)-Webview2-1.0.1661.34-Spoofing-Vulnerability
# Exploit Title: Palo Alto Cortex XSOAR 6.5.0 - Stored Cross-Site Scripting (XSS)
# Exploit Title: Symantec Messaging Gateway 10.7.4 - Stored Cross-Site Scripting (XSS)
# Exploit Title: Suprema BioStar 2 v2.8.16 - SQL Injection
# Exploit Title: Lucee Scheduled Job v1.0 - Command Execution
## Exploit Title: Microsoft Excel 365 MSO (Version 2302 Build 16.0.16130.20186) 64-bit - Remote Code Execution (RCE)
# Title: Adobe Connect 11.4.5 - Local File Disclosure
# Exploit Title: IBM Aspera Faspex 4.4.1 - YAML deserialization (RCE)
# Exploit Title: Docker based datastores for IBM Instana 241-2 243-0 - No Authentication
## Exploit Title: craftercms 4.x.x - CORS
# Exploit Title: Provide Server v.14.4 XSS - CSRF & Remote Code Execution (RCE)
# Exploit Title: Apache Tomcat 10.1 - Denial Of Service
# Exploit Title: ImageMagick 7.1.0-49 - Arbitrary File Read
# Exploit Title: BTCPay Server v1.7.4 - HTML Injection
# Exploit Title: PostgreSQL 9.6.1 - Remote Code Execution (RCE) (Authenticated)
Exploit Title: Secure Web Gateway 10.2.11 - Cross-Site Scripting (XSS)
# Exploit Title: sleuthkit 4.11.1 - Command Injection
## Exploit Title: ManageEngine Access Manager Plus 4.3.0 - File-path-traversal
# Exploit Title: Active eCommerce CMS 6.5.0 - Stored Cross-Site Scripting (XSS)
# Exploit Title: SQL Monitor 12.1.31.893 - Cross-Site Scripting (XSS)
# Exploit Title: Apache 2.4.x - Buffer Overflow
Exploit Title: perfSONAR v4.4.5 - Partial Blind CSRF
# Exploit Title: Shoplazza 1.1 - Stored Cross-Site Scripting (XSS)
# Exploit Title: Virtual Reception v1.0 - Web Server Directory Traversal
# Exploit Title: Covenant v0.5 - Remote Code Execution (RCE)
# Exploit Title: Dreamer CMS v4.0.0 - SQL Injection
# Exploit Title: Hashicorp Consul v1.0 - Remote Command Execution (RCE)
# Exploit Title: OPSWAT Metadefender Core - Privilege Escalation
#Exploit Title: X-Skipper-Proxy v0.13.237 - Server Side Request Forgery (SSRF)
# Exploit Title: Pega Platform 8.1.0 - Remote Code Execution (RCE)
# Exploit Title: Fortinet Authentication Bypass v7.2.1 - (FortiOS, FortiProxy, FortiSwitchManager)
# Exploit Title: Teleport v10.1.1 - Remote Code Execution (RCE)
// Exploit Title: Blink1Control2 2.2.7 - Weak Password Encryption
# Exploit Title: Bookwyrm v0.4.3 - Authentication Bypass
# Exploit Title: Gitea Git Fetch Remote Code Execution
# Exploit Title: PAN-OS 10.0 - Remote Code Execution (RCE) (Authenticated)