php

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers/漏洞数据库

日期 标题 类别 作者
2023-07-19 Blackcat Cms v1.4 – Stored XSS
  • webapps
  • Mirabbas Ağalarov
    2023-07-19 Statamic 4.7.0 – File-Inclusion
  • webapps
  • nu11secur1ty
    2023-07-19 CmsMadeSimple v2.2.17 – Stored Cross-Site Scripting (XSS)
  • webapps
  • Mirabbas Ağalarov
    2023-07-19 CmsMadeSimple v2.2.17 – Remote Code Execution (RCE)
  • webapps
  • Mirabbas Ağalarov
    2023-07-19 CmsMadeSimple v2.2.17 – session hijacking via Server-Side Template Injection (SSTI)
  • webapps
  • Mirabbas Ağalarov
    2023-07-19 Online Piggery Management System v1.0 – unauthenticated file upload vulnerability
  • webapps
  • 1337kid
    2023-07-19 Backdrop Cms v1.25.1 – Stored Cross-Site Scripting (XSS)
  • webapps
  • Mirabbas Ağalarov
    2023-07-19 Vaidya-Mitra 1.0 – Multiple SQLi
  • webapps
  • nu11secur1ty
    2023-07-19 Joomla! com_booking component 2.4.9 – Information Leak (Account enumeration)
  • webapps
  • qw3rTyTy
    2023-07-19 phpfm v1.7.9 – Authentication type juggling
  • webapps
  • thoughtfault
    2023-07-19 PimpMyLog v1.7.14 – Improper access control
  • webapps
  • thoughtfault
    2023-07-15 Admidio v4.2.10 – Remote Code Execution (RCE)
  • webapps
  • Mirabbas Ağalarov
    2023-07-15 ProjeQtOr Project Management System v10.4.1 – Multiple XSS
  • webapps
  • Mirabbas Ağalarov
    2023-07-15 News Portal v4.0 – SQL Injection (Unauthorized)
  • webapps
  • Hubert Wojciechowski
    2023-07-15 Icinga Web 2.10 – Authenticated Remote Code Execution
  • webapps
  • Dante Corona
    2023-07-15 Pluck v4.7.18 – Remote Code Execution (RCE)
  • webapps
  • Mirabbas Ağalarov
    2023-07-15 WinterCMS < 1.2.3 - Persistent Cross-Site Scripting
  • webapps
  • abhishek morla
    2023-07-11 BuildaGate5library v5 – Reflected Cross-Site Scripting (XSS)
  • webapps
  • Idan Malihi
    2023-07-07 Faculty Evaluation System v1.0 – SQL Injection
  • webapps
  • Andrey Stoykov
    2023-07-06 Piwigo v13.7.0 – Stored Cross-Site Scripting (XSS) (Authenticated)
  • webapps
  • Okan Kurtulus
    2023-07-06 Lost and Found Information System v1.0 – SQL Injection
  • webapps
  • Amirhossein Bahramizadeh
    2023-07-06 Gila CMS 1.10.9 – Remote Code Execution (RCE) (Authenticated)
  • webapps
  • Omer Shaik
    2023-07-04 Beauty Salon Management System v1.0 – SQLi
  • webapps
  • Fatih Nacar
    2023-07-04 Car Rental Script 1.8 – Stored Cross-site scripting (XSS)
  • webapps
  • CraCkEr