Web Viewer 1.0.0.193 (Samsung SRN-1670D) – Unrestricted File Upload
# Exploit Title: Unrestricted file upload vulnerability - Web Viewer 1.0.0.193 on Samsung SRN-1670D
webapps 相关类别内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: Unrestricted file upload vulnerability - Web Viewer 1.0.0.193 on Samsung SRN-1670D
# Exploit Title: osCommerce 2.3.4.1 Authenticated Arbitrary File Upload
# Exploit Title: XSS in MyBB up to 1.8.13 via installer
# Exploit Title: RCE in MyBB up to 1.8.13 via installer
## Vulnerability Summary
ManageEngine Applications Manager version 13 suffers from multiple post-authentication SQL injection vulnerabilities.
# Exploit Title: pfSense Groups) in the handling of the members[] parameter. This allows an authenticated WebGUI use...
# Exploit Title: Userpro – WordPress Plugin – Authentication Bypass
# Exploit Title: Logitech Media Server : HTML code injection and execution.
# Exploit Title: Logitech Media Server : Persistent Cross Site Scripting(XSS)
Advisory: XML External Entity Expansion in Ladon Webservice
# Exploit Title: JTRT Responsive Tables 4.1 – WordPress Plugin – Sql Injection
# Exploit Title: Ingenious School Management System 2.3.0 - SQL injection
# Exploit Title: OctoberCMS 1.0.426 - CSRF to Admin Account Takover
#!/usr/local/bin/python
# # # # #
Username:
# # # # #
# # # # #
# # # # #
# # # # #
# # # # #
# # # # #
Username
# # # # #
# # # # #
# # # # #
# # # # #
# # # # #
# # # # #