osCommerce 2.3.4.1 – Remote Code Execution
# Exploit Title: osCommerce 2.3.4.1 Remote Code Execution
php 相关平台内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: osCommerce 2.3.4.1 Remote Code Execution
# Exploit Title: WP Security Audit Log Plugin, Sensitive Information Disclosure
# Exploit Title: Joomla! Component AcySMS 3.5.0 CSV Macro Injection
# Exploit Title: Joomla! Component Acymailing Starter 5.9.5 CSV Macro
# Exploit Title : Contact Form 7 to Database Extension Wordpress Plugin CSV Injection
# Exploit Title : Relevanssi Wordpress Search Plugin Reflected Cross Site Scripting (XSS)
# Exploit Title: Open-AuditIT Professional 2.1 - Stored Cross site scripting (XSS)
# Exploit Title: Laravel log viewer by rap2hpoutre local file download (LFD)
Product: Site Editor Wordpress Plugin - https://wordpress.org/plugins/site-editor/
# Exploit Title: MyBB Last User's Threads in Profile Plugin v1.2 - Persistent XSS
# Exploit Title: XenForo CSS Loader DoS
# Exploit Title: VSMS Multiple Vulnerabilities
# Exploit Title : Duplicator Wordpress Migration Plugin Reflected Cross Site Scripting (XSS)
===============================================================================
=============================================
# Exploit Title: Multiple SQL injection vulnerabilities in Bacula-Web
# Exploit Title: Redaxo CMS Addon MyEvents SQL Injection [ Backend ]
SEC Consult Vulnerability Lab Security Advisory < 20180227-0 >
# Title: TestLink Open Source Test Management( comment out skip-networking as well as bind-address (if any present i...
# Exploit Title: uWSGI PHP Plugin Directory Traversal
#!/usr/bin/env python3
# Exploit Title: CMS Made Simple 2.1.6 - Remote Code Execution
# Exploit Title: SQL Injection exists in PHP Scripts Mall School Management Script 3.0.4.
# Exploit Title: MyBB My Arcade Plugin v1.3 - Persistent XSS
# Exploit Title: October CMS Stored Code Injection
# Exploit Title: PSNews Website (Same Backend with Mobile Apps) 1.0.0 - 'Keywords' SQL Injection
# Exploit Title: PHIMS - Hospital Management Information System - 'Password' SQL Injection