webapps

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers/漏洞数据库

日期 标题 类别 作者
2020-07-30 Online Shopping Alphaware 1.0 – Authentication Bypass
  • webapps
  • Ahmed Abbas
    2020-07-29 WordPress Plugin Maintenance Mode by SeedProd 5.1.1 – Persistent Cross-Site Scripting
  • webapps
  • Jinson Varghese Behanan
    2020-07-29 Cisco Adaptive Security Appliance Software 9.7 – Unauthenticated Arbitrary File Deletion
  • webapps
  • 0xmmnbassel
    2020-07-28 Cisco Adaptive Security Appliance Software 9.11 – Local File Inclusion
  • webapps
  • 0xmmnbassel
    2020-07-27 eGroupWare 1.14 – ‘spellchecker.php’ Remote Command Execution
  • webapps
  • Berk KIRAS
    2020-07-26 Socket.io-file 2.0.31 – Arbitrary File Upload
  • webapps
  • Cr0wTom
    2020-07-26 ManageEngine Applications Manager 13 – ‘MenuHandlerServlet’ SQL Injection
  • webapps
  • aldorm
    2020-07-26 Sickbeard 0.1 – Cross-Site Request Forgery (Disable Authentication)
  • webapps
  • bdrake
    2020-07-26 GOautodial 4.0 – Persistent Cross-Site Scripting (Authenticated)
  • webapps
  • Balzabu
    2020-07-26 F5 Big-IP 13.1.3 Build 0.0.6 – Local File Inclusion
  • webapps
  • Carlos E. Vieira
    2020-07-26 Webtareas 2.1p – Arbitrary File Upload (Authenticated)
  • webapps
  • AppleBois
    2020-07-26 Bio Star 2.8.2 – Local File Inclusion
  • webapps
  • SITE Team
    2020-07-26 PandoraFMS 7.0 NG 746 – Persistent Cross-Site Scripting
  • webapps
  • AppleBois
    2020-07-26 Koken CMS 0.22.24 – Arbitrary File Upload (Authenticated)
  • webapps
  • V1n1v131r4
    2020-07-26 elaniin CMS – Authentication Bypass
  • webapps
  • BKpatron
    2020-07-26 Online Course Registration 1.0 – Unauthenticated Remote Code Execution
  • webapps
  • boku
    2020-07-26 LibreHealth 2.0.0 – Authenticated Remote Code Execution
  • webapps
  • boku
    2020-07-26 Bludit 3.9.2 – Directory Traversal
  • webapps
  • James Green
    2020-07-26 PandoraFMS NG747 7.0 – ‘filename’ Persistent Cross-Site Scripting
  • webapps
  • Emre ÖVÜNÇ
    2020-07-26 WordPress Plugin Email Subscribers & Newsletters 4.2.2 – ‘hash’ SQL Injection (Unauthenticated)
  • webapps
  • KBA@SOGETI_ESEC
    2020-07-26 Rails 5.0.1 – Remote Code Execution
  • webapps
  • Lucas Amorim
    2020-07-26 WordPress Plugin Email Subscribers & Newsletters 4.2.2 – Unauthenticated File Download
  • webapps
  • KBA@SOGETI_ESEC
    2020-07-26 Virtual Airlines Manager 2.6.2 – Persistent Cross-Site Scripting
  • webapps
  • Peter Blue
    2020-07-26 UBICOD Medivision Digital Signage 1.5.1 – Cross-Site Request Forgery (Add Admin)
  • webapps
  • LiquidWorm