webapps
webapps 相关类别内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
Apache2Triad 1.5.4 – Multiple Vulnerabilities
[+] Credits: John Page AKA hyp3rlinx
ZKTime Web Software 2.0 – Improper Access Restrictions
Exploit Title: ZKTime Web Software 2.0 - Broken Authentication
ZKTime Web Software 2.0 – Cross-Site Request Forgery
Exploit Title: ZKTime Web Software 2.0 - Cross Site Request Forgery
Symantec Messaging Gateway 10.6.3-2 – Root Remote Command Execution
This is an advisory for CVE-2017-6327 which is an unauthenticated remote
QuantaStor Software Defined Storage < 4.3.1 - Multiple Vulnerabilities
1. --- Advisory details ---
iTech Movie Script 7.51 – SQL Injection
# # # # #
iTech Job Script 9.27 – SQL Injection
# # # # #
iTech Dating Script 3.40 – SQL Injection
# # # # #
iTech Travel Script 9.49 – SQL Injection
# # # # #
iTech B2B Script 4.42 – SQL Injection
# # # # #
DeWorkshop 1.0 – Arbitrary File Upload
# # # # #
eCardMAX 10.5 – SQL Injection
# # # # #
LiveProjects 1.0 – SQL Injection
# # # # #
LiveSales 1.0 – SQL Injection
# # # # #
LiveInvoices 1.0 – SQL Injection
# # # # #
LiveSupport 1.0 – SQL Injection
# # # # #
LiveCRM 1.0 – SQL Injection
# # # # #
Matrimony Script 2.7 – SQL Injection
# # # # #
Food Ordering Script 1.0 – SQL Injection
# # # # #
Photogallery Project 1.0 – SQL Injection
# # # # #
Online Quiz Project 1.0 – SQL Injection
# # # # #
ClipBucket 2.8.3 – Multiple Vulnerabilities
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
Quali CloudShell 7.1.0.6508 (Patch 6) – Persistent Cross-Site Scripting
# Vulnerability type: Multiple Stored Cross Site Scripting
De-Tutor 1.0 – SQL Injection
# # # # #
De-Journal 1.0 – SQL Injection
# # # # #
DeWorkshop 1.0 – SQL Injection
# # # # #